Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Mohamed_kamal
New Contributor

DNS issue

i have fortimail 200d and fortigate 200D

when i send any mail replay me postmaster is (reason: 550 *** The HELO for IP address 41.38.52.75 was '[41.38.52.75]' (valid but not recommended syntax )

i contact with senderbase team to know why added my IP to blacklist and replay me that 

To this end, we are seeing reports of HELO strings which do not match the PTR / rDNS of the IP. One of the HELO string we are seeing  “[41.38.52.75]”  which is not exact matches to the PTR of the IP 41.38.52.75  (mail.elashrygroup.com).

how to resolve ip to HELO  ? 

please  help me 

41 REPLIES 41
Bromont_FTNT

Too many connections? Do you have lots of mail going there?

 

after the successful connection can you input "ehlo mail.elashrygroup.com" and see what the results are?

Mohamed_kamal

replay is 

mail # exec telnet  alt1.gmail-smtp-in.l.google.com:25
getaddrinfo error: Servname not supported for ai_socktype addr:alt1.gmail-smtp-in.l.google.com port:25exec
mail # ehlo mail.elashrygroup.com
Parsing error at 'ehlo'. err=1
Command failed(-284). Error string:
Bromont_FTNT

try "exec telnet smtp.fortinet.com" instead...once successfully connected try "ehlo mail.elashrygroup.com"

Mohamed_kamal

answered is 

Connection timed out in 30 seconds.
 
Connection status to smtp.fortinet.com port 23:
	Connecting to remote host failed
emnoc
Esteemed Contributor III

b4 you do that, what  DNS server entries do you have in  the FML? It looks like your  DNS-servers applied to the FML are 1> wrong 2> block  ( fwpolicy  or lack of )  3> improper configurations

 

I believe you have a execute nslookup  of diag test command for testing DNS resolution via the cli cmd-line, try that 1st. If the FML can't resolve any host than your telnet will break and pretty everything else  that relies on DNS.

 

PCNSE 

NSE 

StrongSwan  

PCNSE NSE StrongSwan
Mohamed_kamal

DNS is 8.8.8.8 & 4.2.2.3

 

Bromont_FTNT

sorry... forgot to put the :25 in there....

 

exec telnet smtp.fortinet.com:25

or 

exec smtptest smtp.fortinet.com

Mohamed_kamal

exec telnet smtp.fortinet.com:25
Connected
 
421 service not available (connection refused, too many connections)
 
Entering interactive mode. Type CTRL-D to exit.
Connection closed.
 
Connection status to smtp.fortinet.com port 25:
	Connecting to remote host succeeded.

another command is a same answer 

Bromont_FTNT

you must be having network issues or something else proxying your smtp traffic

Mohamed_kamal

ok i have firewall fortigate 200d can u help me to fix this issue ?

Labels
Top Kudoed Authors