• If you are still using CentOS 7.9, it's time to convert to Alma 8 with the free centos2alma tool by Plesk or Plesk Migrator. Please let us know your experiences or concerns in this thread:
    CentOS2Alma discussion

Issue DMARC issue with forward mail

Yeah.. I guess the Sendgrid thing is at least "suspect"

But the fact that you have to turn off DMARC for the locals to get mail is not right. We must understand if that "missing piece" of yours in /etc/postfix/master.cf can explain this and why you don't have it...

Pinging my pal @Mark Muyskens ... :) Do you have that piece of cr** in your Postfix config?? Do you know what's that for??

dis is mine;

https://markmuyskens.com/master.cf

although, this server is hosed. I'm about to wipe and reinstall. i'll compare and see if it's the same with a fresh install.
 
Well - meant to install 17.8 first but wasn't paying attention so ended up with a clean 17.5 install that doesn't have the entry, Upgrading to 17.8 added it in.
 
Well - meant to install 17.8 first but wasn't paying attention so ended up with a clean 17.5 install that doesn't have the entry, Upgrading to 17.8 added it in.
Even better, Mark! Now we know for sure where it does come from! Thanks! :)

... and we know for sure that I can't compare my logs with those from @Giuseppe and @G J Piper
... and we know for sure that we are between a rock and an hard place

:(
 
You want root on this box? You're welcome to break it if you it helps....
Thanks Mark, appreciated, but TBH I'm thinking about launching a temp VPS on DO, but with 17.5.3 to put me in the same exact conditions as @Giuseppe and @G J Piper
Only problems I have are:
  • time. I'm quite busy with other stuff ATM...
  • a license. I know with 17.8.11 you can get a temp license (although I haven't yet looked "how"), but I don't think this is possible with 17.5.3, correct?
 
Give me another 20, I'll take it back to 17.5. No added costs to me, it's spare resources.
 
Fantastic, thank you!
Can you put this in .ssh/authorized_keys, please:
Code:
ssh-rsa AAAAB3NzaC1yc2EAAAABJQAAAQEAijgcA+/R0/hpPxtpYh/d4q9etuxMLeoSQC6yZuJ2I1PcHOj+1zn7euIhnXEXyCaL6B4M2JwbXJxcQKmYIVYD7CIlzOhK2WNCSm9C6bvt2x8ScncNyc2XqC5FUthFvRJqs9SEYrf+ogJ/RAPVaZXIwLBSxrptEg9cM4F09ebDiEa9U/BTVWfmQ7/ggp2lugMEJp+xELvRfH59/MrvdCmU/B/FeOawM0s6NSXJA3eFTLt8JLVejCoohOQetjvrN+tOyIf4OPsFkxoV+hlOINh5taPn1hY4InZ3QvrBNxFAAL5DSVLDXachtT3ln6sCSF09GEISL3FvRFIPg8KMComkZQ== smz DigitalOcean

how do you do DNS?
may I change it and install the DO DNS Extension?
 
Last edited:
Should be up now.
I just have a cheesy free domain on there. You can go with DO, doesn't matter :D
 
Last edited:
@Giuseppe and @G J Piper : bad good news for you! ;)

EVERYTHING (I mean, the whole enchilada of forwards, with all the DKIM/SPF/DMARC checking turned on...) on a fresh 17.5.3 #43 installation!
True, @Mark Muyskens ?

I'm out of ideas ATM...

@G J Piper yours might be due to the relayer...
@Giuseppe , yours can be because of the rDNS and MX being... questionable...

I don't know... those are just guesses...

:(
 
Code:
Mar 13 19:46:15 plesk postfix/smtpd[28591]: connect from sonic309-26.consmr.mail.ir2.yahoo.com[77.238.179.84]
Mar 13 19:46:15 plesk postfix/smtpd[28591]: SSL_accept error from sonic309-26.consmr.mail.ir2.yahoo.com[77.238.179.84]: 0
Mar 13 19:46:15 plesk postfix/smtpd[28591]: warning: TLS library problem: 28591:error:14094416:SSL routines:ssl3_read_bytes:sslv3 alert certificate unknown:s3_pkt.c:1493:SSL alert number 46:
Mar 13 19:46:15 plesk postfix/smtpd[28591]: lost connection after STARTTLS from sonic309-26.consmr.mail.ir2.yahoo.com[77.238.179.84]
Mar 13 19:46:15 plesk postfix/smtpd[28591]: disconnect from sonic309-26.consmr.mail.ir2.yahoo.com[77.238.179.84]
Mar 13 19:46:15 plesk postfix/smtpd[28591]: connect from sonic309-26.consmr.mail.ir2.yahoo.com[77.238.179.84]
Mar 13 19:46:16 plesk postfix/smtpd[28591]: 305B040427C8: client=sonic309-26.consmr.mail.ir2.yahoo.com[77.238.179.84]
Mar 13 19:46:16 plesk postfix/cleanup[28596]: 305B040427C8: message-id=<[email protected]>
Mar 13 19:46:16 plesk check-quota[28597]: Starting the check-quota filter...
Mar 13 19:46:16 plesk /usr/lib64/plesk-9.0/psa-pc-remote[24410]: handlers_stderr: SKIP
Mar 13 19:46:16 plesk /usr/lib64/plesk-9.0/psa-pc-remote[24410]: SKIP during call 'check-quota' handler
Mar 13 19:46:16 plesk spf[28598]: Starting the spf filter...
Mar 13 19:46:16 plesk spf[28598]: SPF result: pass
Mar 13 19:46:16 plesk spf[28598]: SPF status: PASS
Mar 13 19:46:16 plesk /usr/lib64/plesk-9.0/psa-pc-remote[24410]: handlers_stderr: PASS
Mar 13 19:46:16 plesk /usr/lib64/plesk-9.0/psa-pc-remote[24410]: PASS during call 'spf' handler
Mar 13 19:46:16 plesk postfix/qmgr[28546]: 305B040427C8: from=<[email protected]>, size=2498, nrcpt=1 (queue active)
Mar 13 19:46:16 plesk postfix-local[28600]: postfix-local: [email protected], [email protected], dirname=/var/qmail/mailnames
Mar 13 19:46:16 plesk dk_check[28601]: Starting the dk_check filter...
Mar 13 19:46:16 plesk dk_check[28601]: DKIM verify result: DKIM verification (d=yahoo.com, 2048-bit key) succeeded
Mar 13 19:46:16 plesk check-quota[28606]: cannot get sender domain
Mar 13 19:46:16 plesk check-quota[28606]: Unable to intialize check-quota mail handler
Mar 13 19:46:16 plesk journal: plesk sendmail[28605]: Error during 'check-quota' handler
Mar 13 19:46:16 plesk postfix/pickup[28545]: 88F0C4116A5D: uid=30 from=<[email protected]>
Mar 13 19:46:16 plesk postfix/cleanup[28596]: 88F0C4116A5D: message-id=<[email protected]>
Mar 13 19:46:16 plesk postfix/qmgr[28546]: 88F0C4116A5D: from=<[email protected]>, size=3118, nrcpt=1 (queue active)
Mar 13 19:46:16 plesk check-quota[28614]: cannot get sender domain
Mar 13 19:46:16 plesk check-quota[28614]: Unable to intialize check-quota mail handler
Mar 13 19:46:16 plesk journal: plesk sendmail[28613]: Error during 'check-quota' handler
Mar 13 19:46:16 plesk postfix/pickup[28545]: 92F384116B21: uid=30 from=<[email protected]>
Mar 13 19:46:16 plesk postfix/cleanup[28596]: 92F384116B21: message-id=<[email protected]>
Mar 13 19:46:16 plesk postfix/pipe[28599]: 305B040427C8: to=<[email protected]>, relay=plesk_virtual, delay=0.53, delays=0.43/0.01/0/0.09, dsn=2.0.0, status=sent (delivered via plesk_virtual service)
Mar 13 19:46:16 plesk postfix/qmgr[28546]: 305B040427C8: removed
Mar 13 19:46:16 plesk postfix/qmgr[28546]: 92F384116B21: from=<[email protected]>, size=3118, nrcpt=1 (queue active)
Mar 13 19:46:16 plesk postfix-local[28618]: postfix-local: [email protected], [email protected], dirname=/var/qmail/mailnames
Mar 13 19:46:16 plesk postfix/smtpd[28591]: disconnect from sonic309-26.consmr.mail.ir2.yahoo.com[77.238.179.84]
Mar 13 19:46:16 plesk dk_check[28619]: Starting the dk_check filter...
Mar 13 19:46:16 plesk dk_check[28619]: DKIM verify result: DKIM verification (d=yahoo.com, 2048-bit key) succeeded
Mar 13 19:46:16 plesk dovecot: service=lda, [email protected], ip=[]. msgid=<[email protected]>: saved mail to INBOX
Mar 13 19:46:16 plesk postfix/pipe[28599]: 92F384116B21: to=<[email protected]>, relay=plesk_virtual, delay=0.04, delays=0/0/0/0.04, dsn=2.0.0, status=sent (delivered via plesk_virtual service)
Mar 13 19:46:16 plesk postfix/qmgr[28546]: 92F384116B21: removed
Mar 13 19:46:17 plesk postfix/smtp[28611]: 88F0C4116A5D: to=<[email protected]>, relay=gmail-smtp-in.l.google.com[209.85.232.26]:25, delay=0.95, delays=0.01/0.01/0.23/0.7, dsn=2.0.0, status=sent (250 2.0.0 OK 1520995577 e21si1219948qkm.470 - gsmtp)
Mar 13 19:46:17 plesk postfix/qmgr[28546]: 88F0C4116A5D: removed
Mar 13 19:47:08 plesk dovecot: imap-login: Login: user=<[email protected]>, method=DIGEST-MD5, rip=::1, lip=::1, mpid=28639, secured, session=<iVcdZFZnkqwAAAAAAAAAAAAAAAAAAAAB>
Mar 13 19:47:08 plesk dovecot: service=imap, [email protected], ip=[::1]. Logged out rcvd=318, sent=4356
 
Back
Top