Solved

unable to send to outside recipient with relay on inside server (exchange 2013)

Posted on 2014-09-12
8
689 Views
Last Modified: 2014-09-20
I'm trying to send email to an outside vendor via an intranet server inside my domain. I've created a receive connector on my exchange server using frontend transport and custom type.  Exchange users and anonymous users in the permissions group. Scope is set to the specific web server IP address sending the mail to the relay server. I can send mail to any inside user on exchange.

I added the Get-ReceiveConnector -Identity "Server\RelayConnector" | Add-ADPermission -User "NT AUTHORITY\ANONYMOUS LOGON" -ExtendedRights "ms-Exch-SMTP-Accept-Any-Recipient" at the exchange power shell prompt successfully.  
Still no love. Did I miss a step please?

thanx
0
Comment
Question by:davebird
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 5
  • 3
8 Comments
 
LVL 8

Expert Comment

by:tshearon
ID: 40320252
It doesn't sound like you missed a step. You shouldn't need Exchange Users in your permissions group and I wonder if unticking that would resolve it.
0
 

Author Comment

by:davebird
ID: 40320269
Nope.  That didn't help.  But thank you for the suggestion.
0
 
LVL 8

Expert Comment

by:tshearon
ID: 40320317
Can you provide the error you are receiving?
0
Office 365 Training for Admins - 7 Day Trial

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

 

Author Comment

by:davebird
ID: 40320322
happy to:  

SERVER -> CLIENT: 220 mail.myserver.com ESMTP Symantec Messaging Gateway
 CLIENT -> SERVER: EHLO web.server.com
 SERVER -> CLIENT: 250-mail.myserver.com says EHLO to 1.2.3.4:14307250-8BITMIME250-ENHANCEDSTATUSCODES250-PIPELINING250 SIZE 10485760
 CLIENT -> SERVER: MAIL FROM:<closed@myserver.com>
 SERVER -> CLIENT: 250 2.0.0 MAIL FROM accepted
 CLIENT -> SERVER: RCPT TO:<david@outsideserver.com>
 SERVER -> CLIENT: 554 5.1.2 Recipient address rejected: User unknown
 SMTP ERROR: RCPT TO command failed: 554 5.1.2 Recipient address rejected: User unknown
 CLIENT -> SERVER: QUIT
 SERVER -> CLIENT: 221 2.3.0 mail.myserver.com closing connection
 SMTP Error: The following recipients failed: david@outsideserver.com
 Mailer Error: SMTP Error: The following recipients failed: david@outsideserver.com
0
 
LVL 8

Expert Comment

by:tshearon
ID: 40320352
Ah so you are using a symantec product as mail proxy or firewall? Is there something you need to change there to allow this? Although I'd suspect you would get an invalid sender message but you never know.
0
 

Author Comment

by:davebird
ID: 40320385
That's an awesome suggestion!  I'll totally check that as a possibility.  My brain is full for tonight but I thank you for your rapid responses.  I'll let you know what I learn (tomorrow).
0
 

Accepted Solution

by:
davebird earned 0 total points
ID: 40323891
I'm not sure how to say this other than I'm a goober.  Understanding what is happening is a great way to make something work. The connector and the command in PS work if you use the right sending email address to the right server.  
thank you for your responses. Talking through things makes you see what you're staring right at!
0
 

Author Closing Comment

by:davebird
ID: 40334200
I was attempting to authenticate the user from one domain to an open relay on a different domain. Never going to authenticate.  Sorry to have posted but thank you for your efforts.
0

Featured Post

Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Following basic email etiquette rules will help you write a professional email and achieve a good, lasting impression with your contacts.
This article explains in simple steps how to renew expiring Exchange Server Internal Transport Certificate.
In this video we show how to create a Distribution Group in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >>…
In this video we show how to create a Contact in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Recipients >> Contact ta…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question