[CLUE-Tech] Mail issue

black at galaxy.silvren.com black at galaxy.silvren.com
Tue Jul 1 08:23:12 MDT 2003


You guys seem to be pretty affluent with mail issues, so I thought I'd
throw mine in:

I have two linux boxes, one using slackware 9.0 and the other using redhat
8.0. Both are running default configurations with sendmail, with the only
exception being I've edited the config file to specify a relay.

So, the line looks like:

==================
# "Smart" relay host (may be null)
DSmy.relay.com
==================

Obviously I've changed the actual DNS name I've stuck in there.

I'm running Snort with ACID on both these peecees. Within ACID I have the
option to email myself alerts. When I try to email them, only the mailings
from the slackware box make it. The ones from the Redhat box don't.

Slackware mail log:
==================
Jun 27 13:59:35 hsgccl01 sendmail[31332]: h5RJxZFV031332: from=nobody,
size=31723, class=0,
nrcpts=1, msgid=<200306271959.h5RJxZFV031332 at hsgccl01.blah.blah>,
relay=nobody at localhost Jun 27 13:59:36 hsgccl01 sm-mta[31333]:
h5RJxZOK031333:  from=<nobody at hsgccl01.blah.blah>, size=31994,
class=0, nrcpts=1,
msgid=<200306271959.h5RJxZFV031332 at hsgccl01.blah.blah>,
proto=ESMTP, daemon=MTA, relay=IDENT:99 at localhost [127.0.0.1] Jun 27
13:59:36 hsgccl01 sendmail[31332]: h5RJxZFV031332:
to=chris.schock at blah.blah, ctladdr=nobody (99/99), delay=00:00:01,
xdelay=00:00:01, mailer=relay, pri=30084, relay=[127.0.0.1] [127.0.0.1],
dsn=2.0.0, stat=Sent (h5RJxZOK031333 Message accepted for delivery) Jun 27
13:59:37 hsgccl01 sm-mta[31336]: h5RJxZOK031333:
to=<chris.schock at blah.blah>, ctladdr=<nobody at hsgccl01.blah.blah>
(99/99), delay=00:00:01, xdelay=00:00:01, mailer=relay, pri=30355,
relay=mail.relay.com. [165.xx.xx.xx], dsn=2.0.0, stat=Sent
(Mail accepted)

Redhat mail log:
===============
Jun 30 10:46:30 hsgccl02 sendmail[28339]: h5UGkU0V028337:
to=<chris.schock at blah.blah>, ctladdr=<nobody at localhost.localdomain>
(99/99), delay=00:00:00, xdelay=00:00:00, mailer=relay, pri=30343,
relay=hscenl01.blah.blah. [165.127.151.4], dsn=2.0.0, stat=Sent
(Mail accepted)
Jun 30 10:46:52 hsgccl02 sendmail[28371]: h5UGkpYb028371: from=black,
size=72, class=0, nrcpts=1,
msgid=<200306301646.h5UGkpYb028371 at localhost.localdomain>,
relay=black at localhost
Jun 30 10:46:52 hsgccl02 sendmail[28373]: h5UGkq0V028373:
from=<black at localhost.localdomain>, size=386, class=0, nrcpts=1,
msgid=<200306301646.h5UGkpYb028371 at localhost.localdomain>, proto=ESMTP,
daemon=MTA, relay=hsgccl02 [127.0.0.1]
Jun 30 10:46:52 hsgccl02 sendmail[28371]: h5UGkpYb028371:
to=chris.schock at blah.blah, ctladdr=black (500/500), delay=00:00:01,
xdelay=00:00:00, mailer=relay, pri=30053, relay=localhost.localdomain.
[127.0.0.1], dsn=2.0.0, stat=Sent (h5UGkq0V028373 Message accepted for
delivery)
Jun 30 10:46:52 hsgccl02 sendmail[28375]: h5UGkq0V028373:
to=<chris.schock at blah.blah>, ctladdr=<black at localhost.localdomain>
(500/500), delay=00:00:00, xdelay=00:00:00, mailer=relay, pri=30367,
relay=my.relay.com. [165.127.151.4], dsn=2.0.0, stat=Sent
(Mail accepted)

They both look like they should work. Any ideas on where to start
troubleshooting this issue?

Thanks



More information about the clue-tech mailing list