URL: https://www.opennet.me/cgi-bin/openforum/vsluhboard.cgi
Форум: vsluhforumID1
Нить номер: 69282
[ Назад ]

Исходное сообщение
"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"

Отправлено zedis , 03-Окт-06 12:27 
Проблема такая что с некоторых серверов не приходит почта на мой Sendmail 8.13.8 почтовик. В логах пишется такая строчка
"did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA"
В чём может быть проблема ???

Содержание

Сообщения в этом обсуждении
"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"
Отправлено lavr , 03-Окт-06 13:09 
>Проблема такая что с некоторых серверов не приходит почта на мой Sendmail
>8.13.8 почтовик. В логах пишется такая строчка
>"did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA"
>В чём может быть проблема ???

вероятно в чем-то другом, потому как верхнее сообщение говорит о том что НЕ РАЗРЕШЕНО
выполнять expn/vrfy/etrn во время соединения - см свои настройки sendmail:

define(`confPRIVACY_FLAGS', `goaway,authwarnings,noexpn,novrfy,noetrn,noreceipts,nobodyreturn')

например:

[alone]/etc/mail > telnet alone 25
Trying 62.84.100.160...
Connected to alone.dubna.ru.
Escape character is '^]'.
220 Lavr-AUTH-Antispam-MTA; ESMTP Non-authorized relaying DENIED.
vrfy lavr@alone.dubna.ru
252 2.5.2 Cannot VRFY user; try RCPT to attempt delivery (or try finger)
etrn
502 5.7.0 Sorry, we do not allow this operation
expn
502 5.7.0 Sorry, we do not allow this operation
mail from: <lavr@dubna.ru> ret=full
503 5.0.0 Polite people say HELO first
helo lala
250 alone.dubna.ru Hello alone.dubna.ru [62.84.100.160], pleased to meet you
mail from: <lavr@dubna.ru> ret=full
504 5.7.0 Sorry, RET not supported, we do not allow DSN
rset
250 2.0.0 Reset state
quit
221 2.0.0 alone.dubna.ru closing connection
Connection closed by foreign host.
[alone]/etc/mail >

позволяет минимальные отсечки шелухи


"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"
Отправлено zedis , 03-Окт-06 15:39 
Вот моя конфигурация Сендмайла:
divert(-1)                                                                                                                          
divert(0)                                                                                                                          
VERSIONID(`LINUX')                                                                                                                  
OSTYPE(bsd4.4)                                                                                                                      
FEATURE(nouucp, `reject')                                                                                                          
dnl Dlja ne rugateljstva sendmail'a na mnozhestvo interfacesov dnl                                                                  
define(`confDONT_PROBE_INTERFACES',`True')                                                                                          
define(`confTO_CONNECT', `3m')                                                                                                      
define(`confTRY_NULL_MX_LIST',true)                                                                                                
dnl shtobi relay toljko dlja domenov i IP ukazanih v faile relay-domains dnl                                                        
FEATURE(relay_entire_domain)                                                                                                        
FEATURE(`use_cw_file')                                                                                                              
FEATURE(masquerade_envelope)                                                                                                        
FEATURE(masquerade_entire_domain)                                                                                                  
FEATURE(stickyhost)                                                                                                                
FEATURE(virtusertable, `hash /etc/mail/virtusertable')dnl                                                                          
FEATURE(`access_db')                                                                                                                
                                                                                                                                    
define(`confSMTP_LOGIN_MSG', `ESMTP Server ')                                                                                    
                                                                                                                                    
VIRTUSER_DOMAIN_FILE(`/etc/mail/virtuser-domain')dnl                                                                                
FEATURE(mailertable, `hash /etc/mail/mailertable')dnl                                                                              
FEATURE(genericstable, `hash /etc/mail/genericstable')dnl                                                                          
GENERICS_DOMAIN_FILE(`/etc/mail/generics-domains')dnl                                                                              
                                                                                                                                    
FEATURE(redirect)                                                                                                                  
FEATURE(`accept_unresolvable_domains')                                                                                              
FEATURE(`nouucp', `reject not support UUCP')                                                                                        
                                                                                                                                    
undefine(`UUCP_RELAY')                                                                                                              
undefine(`BITNET_RELAY')                                                                                                            
undefine(`DECNET_RELAY')                                                                                                            
                                                                                                                                    
FEATURE(nocanonify)                                                                                                                                                                                                                                                                                                                                                                                                                                                                                                        
define(`confMAX_MESSAGE_SIZE', `100000000')                                                                                                                                                                                                                              
define(`confNO_RCPT_ACTION', `add-to-undisclosed')                                                                                  
                                                                                                                                    
FEATURE(`no_default_msa')                                                                                                          
INPUT_MAIL_FILTER(`clmilter', `S=local:/var/run/clamav/clmilter.sock, F=, T=S:5m;R:5m')  

define(`confEBINDIR', `/usr/libexec')                                                                                              
FEATURE(`local_lmtp')                                                                                                              
FEATURE(`smrsh', `/usr/libexec/smrsh')                                                                                              
                                                                                                                                    
MAILER(local)                                                                                                                      
MAILER(smtp)                                                                                                                                    
Не понимаю в чём проблема  


"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"
Отправлено lavr , 03-Окт-06 16:57 
>Вот моя конфигурация Сендмайла:
>divert(-1)
>divert(0)
>VERSIONID(`LINUX')
>OSTYPE(bsd4.4)
>FEATURE(nouucp, `reject')
>dnl Dlja ne rugateljstva sendmail'a na mnozhestvo interfacesov dnl
>define(`confDONT_PROBE_INTERFACES',`True')
>define(`confTO_CONNECT', `3m')
>define(`confTRY_NULL_MX_LIST',true)
>dnl shtobi relay toljko dlja domenov i IP ukazanih v faile relay-domains
>dnl
>FEATURE(relay_entire_domain)
>FEATURE(`use_cw_file')
>FEATURE(masquerade_envelope)
>FEATURE(masquerade_entire_domain)
>FEATURE(stickyhost)
>FEATURE(virtusertable, `hash /etc/mail/virtusertable')dnl
>FEATURE(`access_db')
>
>define(`confSMTP_LOGIN_MSG', `ESMTP Server ')
>
>VIRTUSER_DOMAIN_FILE(`/etc/mail/virtuser-domain')dnl
>FEATURE(mailertable, `hash /etc/mail/mailertable')dnl
>FEATURE(genericstable, `hash /etc/mail/genericstable')dnl
>GENERICS_DOMAIN_FILE(`/etc/mail/generics-domains')dnl
>
>FEATURE(redirect)
>FEATURE(`accept_unresolvable_domains')
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^- и на кой козе баян?

>FEATURE(`nouucp', `reject not support UUCP')
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^- второй раз, см вверху

>undefine(`UUCP_RELAY')
>undefine(`BITNET_RELAY')
>undefine(`DECNET_RELAY')
>
>FEATURE(nocanonify)
>define(`confMAX_MESSAGE_SIZE', `100000000')
>define(`confNO_RCPT_ACTION', `add-to-undisclosed')
>
>FEATURE(`no_default_msa')
>INPUT_MAIL_FILTER(`clmilter', `S=local:/var/run/clamav/clmilter.sock, F=, T=S:5m;R:5m')
>
>define(`confEBINDIR', `/usr/libexec')
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^- ? (видимо mailwrapper не используется)

>FEATURE(`local_lmtp')
>FEATURE(`smrsh', `/usr/libexec/smrsh')
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^- на кой? в BSD нормально sh используется

>MAILER(local)
>MAILER(smtp)
>Не понимаю в чём проблема

Обныкновенный mc, то что у вас было в логах - вероятно smtp соединение разрывается
не доходя до команд smtp: helo/ehlo, mail from и тд и тп


"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"
Отправлено zedis , 03-Окт-06 21:33 
Tak i estj ne dohodit do komand ehlo/helo i rvet soedinenije???
Postavil Postfix mesto sendmaila ta zhe problema znachit problema v chom to drugom a vchom eshjo mozhet bit ???

"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"
Отправлено lavr , 04-Окт-06 11:35 
>Tak i estj ne dohodit do komand ehlo/helo i rvet soedinenije???
>Postavil Postfix mesto sendmaila ta zhe problema znachit problema v chom to
>drugom a vchom eshjo mozhet bit ???

это при соединении со ВСЕМИ внешними SMTP соединениями происходит?
Если нет:

- возможно DoS атаки на ваш MTA
- возможно у вас или на удаленной стороне канал тухлый или в промежутке(на маршруте)
между вами и удаленной стороной (если проблема в вас - крутить timeout'ы sendmail'а
и возможно уменьшить mtu в ifconfig'е - только с умом и пониманием)
- возможно проблемы в ESMTP
- возможно проблемы в удаленном MTA, например qmail - известные грабли
...
где-то так



"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"
Отправлено Zerot , 05-Окт-06 14:05 
Согласен с lavr
SMTP протокол подразумевает обмен последовательностью команд при посылке/приёме почты, и ваш почтовик, не получая в разумный промежуток времени ожидаемых команд, делает такие записи в журнал
это может быть спамерское ПО, траблы с удаленным софтом и т.п.
...
в чем-то это нормальное наполнение журнала
у меня, например, среднедневная статистика такова (в урезаном виде)
как можете увидеть, "ваше" сообщение встречается довольно часто

Mail statistics for Oct  4
##############################################################################################
Letter counters
##############################################################################################
Incoming messages (with "from=<" record) -   53423
... NOT FROM internal_users -   45902
Sent OK, messages -   15014
... NOT to  internal_users -    4776
##############################################################################################
Milter Sender
##############################################################################################
Milter-sender reject messages -   33388
ERROR Milter-sender error connecting to filter:, records -       0
ERROR timeout before input from SMTP server -    2613
ERROR Broken pipe -       1
##############################################################################################
Errors
##############################################################################################
ERROR rejecting connections on daemon MTA: 500 children, max 500 -       0
ERROR "did not issue MAIL/EXPN/VRFY/ETRN during connection to MTA" -    9506
ERROR Relaying denied -      72
ERROR Reject records "Access denied" -       0
ERROR Discard records -      96


"Помогите с Sendmail'om 'did not issue MAIL/EXPN/VRFY/ETRN'"
Отправлено techdir , 10-Окт-06 16:25 
Нормальное явление, вашу машину просто просканили