Solved

Yahoo boucing email to our domain, claims "No MX or A records for "ourdomain.edu

Posted on 2011-03-21
9
867 Views
Last Modified: 2012-08-20
Recently, some Yahoo emails to our domain have been bouncing back to users with a "No MX or A records for ourdomain.edu". This is an intermittent problem, and we haven't been able to reliably reproduce the problem. We are receiveing email from other sources.

Our MX records are on our name server, and I can verify that our full DNS records can be seen and retrieved when I check external sources like dnstools.com, mxtoolbox.com, network-tools.com. We are still waiting to hear back from yahoo tech support. Is there anything else I can do in the meanwhile?
0
Comment
Question by:eimonkey
9 Comments
 
LVL 4

Expert Comment

by:cavp76
ID: 35184125
What about PTR record for your mail server? is it configured?? check this also online... if it's not configured, ask your ISP to do it
0
 
LVL 7

Expert Comment

by:jamie_gillespie
ID: 35184158
This will more than likely be due to PTR as mentioned above. Use a SMTP smarthost?

http://support.microsoft.com/kb/303734     -shows you how to set up.

If your ISP is eclipse for example use SMTP.ECLIPSE.CO.UK

Hope this helps
0
 
LVL 7

Expert Comment

by:saastech
ID: 35184162
Check if your domain is on a blacklist? http://www.blacklistalert.org/

Also, can you provide us with the NDR email header?
0
VMware Disaster Recovery and Data Protection

In this expert guide, you’ll learn about the components of a Modern Data Center. You will use cases for the value-added capabilities of Veeam®, including combining backup and replication for VMware disaster recovery and using replication for data center migration.

 

Author Comment

by:eimonkey
ID: 35184316
Double cheked: Yes, we have a PTR record for the mail server. No, we are not on any blacklists.
I'll see if I can get a hold of the NDR header - so far they've just been forwarding me the text of the message.

We did get a hold of someone at AT&T last week, and they have a known problem with people sending messages to external addresses.
0
 
LVL 2

Expert Comment

by:JohnnyIT
ID: 35185336
I wonder if there is a network reliability issue to your DNS servers.  Is it possible that rarely, a DNS lookup is failing, or your server is not consisently providing the DNS info?  As a start, you could ping your DNS servers (from an outside network at an alternate location, from an alternate ISP obviously) for an extended period of time.  See if you get any packet loss, and what the latency is like.

Also, have you double checked your DNS using services like: http://www.intodns.com/ & http://www.mxtoolbox.com/SuperTool.aspx  & http://dnscog.com/  ??  They may help you find the problem.  You never know, maybe your TTL values are set extremely low, and the DNS servers are polling your server more frequently than it can handle.
0
 

Author Comment

by:eimonkey
ID: 35191141
I'll setup the ping for DNS servers. Seems fine so far, but we'll keep an eye on it.

We're getting green checkmarks on everything when checking the outside sites like intodns.com, mxtoolbox.com, and dnscog.com except SOA Expire was over suggested limits and we dont' currently have SPF record, which I will add.
0
 
LVL 2

Expert Comment

by:JohnnyIT
ID: 35192175
The SPF record is becoming more and more important, and while I'm not sure it's causing your exact problem, it definitely needs to be there.

Check this site for help in properly creating the SPF record: http://www.openspf.org/

What was your SOA expire set to??
0
 

Accepted Solution

by:
eimonkey earned 0 total points
ID: 35193453
SOA EXPIRE time is : 2592000 seconds, which was flagged as being too high.  We submitted the change request to our ISP.

We've been running the ping test and periodically running the DNS reports for our domain dnscog.com and dnsstuff reports throughout the day. Although we get a pretty consistent ping reply, one of our three nameservers occassionally is not reponding. The other two have been up consistently. We've contacted our ISP to investigate.

If a sender was attempting to get our MX record and one namesserver was down, wouldn't it go to one of the other two to get the record (if it didn't have it?)
0
 

Author Closing Comment

by:eimonkey
ID: 38310993
SOA Expire change seemed to resolve issues.
0

Featured Post

Simplifying Server Workload Migrations

This use case outlines the migration challenges that organizations face and how the Acronis AnyData Engine supports physical-to-physical (P2P), physical-to-virtual (P2V), virtual to physical (V2P), and cross-virtual (V2V) migration scenarios to address these challenges.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

New-MailboxSearch Powershell Command and step by step approach to Search and Extract Emails form Exchange 2013 Journaling server.
This process describes the steps required to Import and Export data from and to .pst files using Exchange 2010. We can use these steps to export data from a user to a .pst file, import data back to the same or a different user, or even import data t…
Familiarize people with the process of utilizing SQL Server views from within Microsoft Access. Microsoft Access is a very powerful client/server development tool. One of the SQL Server objects that you can interact with from within Microsoft Access…
In this video we show how to create a Shared Mailbox in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >> Sha…

770 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question