Re: New to exchange - Mail relay

Tech-Archive recommends: Fix windows errors by optimizing your registry

From: Andrew (andrew_at_sdfghjk.com)
Date: 12/02/04


Date: Thu, 02 Dec 2004 18:23:34 +0000

On 12/1/04 3:56 AM, in article olfqq0tp7sa9krgms25l581g4k0e9vdo23@4ax.com,
"Rich Matheisen [MVP]" <richnews@rmcons.com.NOSPAM.COM> wrote:

> Andrew <andrew@sdfghjk.com> wrote:
>
> [ snip ]
>
>> Would you agree with this plan? I pit postfix in the DMZ then exchange in
>> the LAN.
>
> Yes.
>
>> I create users on the postfix server ....
>
> Create users? Why? You might want to use the relay_recipients_map and
> put the valid SMTP addresses in there, but you should automate the
> updating of the file that contains them. If you don't you'd have to
> remember to add any new addresses by yourself.
>
>> As for the cost of licences I work at a school so the cost of licences is
>> minimal around $50 a year for one exchange.
>
> It's $0 a year for postfix. :)
Hi,

I followed what I believe to be the instructions on the previous post

http://postfix.state-of-mind.de/patrick.koetter/mailrelay/

but am still failing miserably.

My network is 192.168.1.0/24 and my DMZ is 192.168.2.0/24. The domain is
called test.local and I have a domain called "domain.com"

I have a machine in there with postfix on in there with the ip set to
192.168.2.200, it can surf the internet etc. I have taken the firewall of
the machine to rule out that is not causing the problem.

The DMZ allows access to:

TCP ALL 25 192.168.2.200 25
TCP ALL 110 192.168.2.200 110

I don't think this is problem as I have put a mail server in there on it's
own and it can send and receive internal and external mail no problem.

If I bring the postfix machine into the LAN side and give it an IP in the
192.168.1.0/24 range I can send through it, using the domain.com that I
changed using the UPN suffix and I know this is working because it shows
where it came from in the headers.

But when I change the IP address to 192.168.2.200 and stick it back outside
in the DMZ nothing. I change the IP address of the SMTP connector to
192.168.2.200 and nada? I can ping the machine ... But can not route an
external email through it.

I changed the mynetworks = section in main.cf of postfix to both
192.168.2.0/24 and 192.168.1.0/24 but nada? I have put in the relay_domain
section as domain.com and mail.domain.com but ..?

Where am I going wrong is it something to do with the authentication on the
exchange or is it the relaying on postfix. Is it a little bit of everything?

All help appreciated I'm pulling my hair out.
    
Andrew



Relevant Pages

  • Re: Exchange2K/DMZ
    ... As a plus the postfix system filters lots of nasty attachments, ... The LAN Administrator set up an Exchange server and placed it inside the ... I want to move the Exchange services to the DMZ. ...
    (Focus-Microsoft)
  • Re: Font end exchange in dmz
    ... I have a mailserver (postfix) today. ... My postfix server i in DMZ today. ... >> Exchange RPC connections to Microsoft Exchange from remote locations? ...
    (microsoft.public.isa)
  • [SLE] postfix configuration w/Yast
    ... I ran into a very small problem with postfix. ... First, my network. ... LAN connection to the DMZ boxen. ... the sysconfig files to provide this extra configuration item. ...
    (SuSE)
  • [SLE] postfix configuration w/Yast
    ... I ran into a very small problem with postfix. ... First, my network. ... LAN connection to the DMZ boxen. ... the sysconfig files to provide this extra configuration item. ...
    (SuSE)
  • Re: OT: Setting up a forwarding mail domain in DMZ without pinhole.
    ... > postmap transport after your finished. ... I don't think the postfix transport mechanism is a solution for Sanjay's ... In your proposition the DMZ postfix has to initiate the ... communication through the firewall which the firewall does not allow and ...
    (Fedora)