Solved

Reverse DNS Exchange 2010

Posted on 2014-11-07
10
20 Views
Last Modified: 2015-10-27
I have an Exchange server 2010 with multiple domains.  The problem I have is some emails that go out would fail to a relay error.  I have my ISP setup a reverse dns but even with that it still fails to some selected emails that end users send.  

I tried to change my FQDN value i get a AuthMechinism on receiver connector error.  Can I have multilple FQDN so when other email server check my SMTP banner it replies correctly?  How is this all setup?

Thanks,
0
Comment
Question by:Bulls-Eye
  • 5
  • 4
10 Comments
 
LVL 16

Expert Comment

by:Shaik M. Sajid
ID: 40430008
it's happening only with selected users ?... did u check from those selected users domain are u able to receive the email from other users ?


did u check at mxtoolbox.com

what is the result it's giving ?
0
 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 40430086
On Exchange 2010, the only FQDN that matters is the one on the SEND connector. Ignore the one on the receive connector, as that plays no part in the delivery of your email. You would only "fix" it to pass the test at mxtoolbox and the like, but it wouldn't make any difference.

The FQDN on the Send connector needs to resolve to your Exchange server and match the PTR on the IP address.

If emails are failing for users, what does the NDR say?

Simon.
0
 

Author Comment

by:Bulls-Eye
ID: 40430319
I have multiple domains on my exchange server.  I originally had my ISP setup with all the domain for reverse DNS but I noticed it did a round robin so I switched it to just one primary domain that is important.  So my ISP resolves that one domain.  However, mxtoolbox fails and the response of the server SMTP banner is the domain I originally setup all the servers one.  So I think I need to change that banner but unsure how to do that.  I did try to make that one domain I want that the ISP resovles too as default but that didn't matter and still fails mxtoolbox.  

My challenge is to make every domain pass this reverse lookup.  but at first at least this one domain.

Fred
0
 
LVL 63

Accepted Solution

by:
Simon Butler (Sembee) earned 500 total points
ID: 40430383
mxtoolbox will ALWAYS fail and it doesn't matter one bit.

I posted this in 2009:
http://blog.sembee.co.uk/post/Exchange-2007-and-SMTP-Banner-Tests.aspx

And this earlier this year.
http://blog.sembee.co.uk/post/Exchange-200720102013-Outbound-SMTP-Banner-Testing.aspx

The domains that you are accepting emails for does not matter. The only thing that matters is that the PTR is set correctly (just one record), the PTR resolves to the correct IP address on the A record and the correct FQDN is set on the SEND Connector.

Simon.
0
 

Author Comment

by:Bulls-Eye
ID: 40431977
I have the PTR record set correctly with my ISP.  Those email server that do reverse lookup still deny my emails.  
when I originally created my exchange server it is in a domain that all the other servers are in.  However, I needed to add an additional domain and have email accounts with that domain.  In active directory I have an OU for that domain and have that domain listed in the domains for my exchange server.   I am not sure why that fails.

Do I need to have a single exchange server for each domain that I need to support and make sure I have static IP assigned to each domain/exchange server?

Fred
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 40432391
There aren't enough IP addresses in the world for every domain to have its own IP address. Therefore no, you don't need a separate Exchange server for every domain.
Did you run through the tests that I outlined in my blog postings above? If your messages are being rejected, what does the NDR say?

Simon.
0
 

Author Comment

by:Bulls-Eye
ID: 40725722
I am still having this issue.  these things have not resolved my problem.
0
 
LVL 63

Expert Comment

by:Simon Butler (Sembee)
ID: 40728400
That doesn't really help provide you with a solution.
You have provided no information to assist. The contents of the NDR would be a huge help, but also indicating what you have done would be of some assistance.

Simon.
0
 

Author Comment

by:Bulls-Eye
ID: 41129924
I've requested that this question be deleted for the following reason:

didn't answer my problem
0
 

Author Comment

by:Bulls-Eye
ID: 41129950
I do have a question.  BTW good article.  
will email get rejected on some email servers due to the inability to change the FQDN receive conector? since some email server verify SMTP banner for domain name to protect from what it may think as a relay?
0

Featured Post

Is Your Active Directory as Secure as You Think?

More than 75% of all records are compromised because of the loss or theft of a privileged credential. Experts have been exploring Active Directory infrastructure to identify key threats and establish best practices for keeping data safe. Attend this month’s webinar to learn more.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Exchange server is not supported in any cloud-hosted platform (other than Azure with Azure Premium Storage).
This process describes the steps required to Import and Export data from and to .pst files using Exchange 2010. We can use these steps to export data from a user to a .pst file, import data back to the same or a different user, or even import data t…
In this video we show how to create an Address List in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Organization >> Ad…
This video demonstrates how to sync Microsoft Exchange Public Folders with smartphones using CodeTwo Exchange Sync and Exchange ActiveSync. To learn more about CodeTwo Exchange Sync and download the free trial, go to: http://www.codetwo.com/excha…

910 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

18 Experts available now in Live!

Get 1:1 Help Now