Exchange Server Forums

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [Microsoft Exchange 2003] >> Message Routing >> RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1 Page: <<   < prev  1 [2]
Login
Message << Older Topic   Newer Topic >>
Limited time MSExchange.org offer! -- 1.Sep.2008 1:00:00 PM
TechGenix and SolarWinds have partnered to provide free copies of SolarWinds Exchange Monitor to all visitors who join the MSExchange.org Forums. SolarWinds Exchange Monitor is a handy desktop dashboard that continuously monitors Microsoft Exchange to deliver real-time insight into Exchange services, mail queue sizes, and host server health. Learn more about Exchange Monitor and the free offer!
RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1 - 28.Oct.2004 12:02:00 AM   
Guest
cannot find this article- need hotfix please help

(in reply to Guest)
  Post #: 21
RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1 - 2.Nov.2004 5:24:00 PM   
Andrew Denham

 

Posts: 8
Joined: 28.Apr.2004
From: Henley-on-Thames, UK
Status: offline
The URL for the KB article is:
http://support.microsoft.com/default.aspx?scid=kb;en-us;837993

HOWEVER....

The smtpsvc.dll version in this hotfix (which must be obtained from Microsoft PSS) has been superceeded by a version in a Security Update:

MS04-035: Vulnerability in SMTP could allow remote code execution in Microsoft Windows Server 2003
http://www.microsoft.com/technet/security/bulletin/ms04-035.mspx

So if you have already applied the security update to your Exchange Server, the issue may be fixed!

(in reply to Guest)
Post #: 22
RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1 - 24.Nov.2004 8:27:00 PM   
Guest
I am having this same issue (incorrectly falling back to the A record), running Exchange 2003 and using a Windows 2003 DNS server. A few more details:

-Problem is very infrequent, making troubleshooting difficult.
-I'm not using a DNS forwarder.
-One of the domains I'm having trouble with only has a single MX, so KB article 837993 doesn't help.
-KB article 828263 doesn't seem like it would help because if the DNS query were to big, it would always fail, but that's not the case.

A few thoughts:

I've got another DNS server, running good old BIND 9. I noticed that you can point the SMTP virtual server to a different DNS server, looks like someone else did that with good results. I might give that a shot. Trouble is . . . how do I know if this fixes it? Is there a way to cause the A record fallback to occur?

What exactly is happening - is DNS timing out? Seems like upping the timeout could fix this. But it is described as happening after a "server fail" is received. I'm turning up DNS logging to see if this is really what is going on.

Seems like Exchange 2000 didn't do this. But again, it's so infrequent that's difficult to tell.

(in reply to Guest)
  Post #: 23
RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1 - 5.May2005 11:02:00 PM   
jmedd

 

Posts: 403
Joined: 23.Nov.2004
From: UK
Status: offline
Hi,

We have a very similar problem which is causing us a fair amount of grief. Scenario:

Exchange 2K3 back end <----> Windows 2K3 SMTP with 3rd party scanning software <----> McAffee Webshield Appliance.
AD2000 Mixed
DNS Bind 9 (don't ask why!)

Ex2k3 forwards all outbound mail to Win2K3 SMTP using a smarthost.....Win2K3 SMTP forwards all outbound mail to Webshield box using a smarthost....Webshield uses DNS to fire mail off to Internet.

We see many of the Event id 4007 errors and the mail bounces back to the user with 'You do not have permission to send to this recipient.....'

The very strange aspect which I don't think anyone else in the post has experienced is that it is always trying to relay the mail off of a DNS machine from a subsidary whom we connect to via a VPN and have DNS and AD trust links with. We obviously don't have permission to relay off this machine and have absolutely no idea why it is trying to do this. It does not appear to be configured anywhere to do this.

We've changed the smarthost on the Win2K3 SMTP box to be an IP address instead of a name which we hope might be a workaround, i.e. no DNS resolution going on on that box so no chance for it to try relaying off the subsidary's box. The failures are sporadic though so we won't know for a few days if it has worked.

Just wondered if anyone actually found a fix for this problem? Perhaps Win2K3 SP1?

(in reply to Guest)
Post #: 24
RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1 - 10.May2005 9:22:00 PM   
jrodachy

 

Posts: 39
Joined: 17.Feb.2005
From: Cleveland, OH
Status: offline
With Exchange 2003 (especially with 2003 provided DNS) check the following articles from MSFT: 832223 and 820284. Also, in a recent call to MSFT dealing with a SBS2k3 (w/ ISA) box, the MSFT technician had me alter the "Recursion Timeout" on DNS

HKLM\system\currentcontrolset\services\DNS\parameters\RecursionTimeout=15

I am not responsible if this nukes your box, or terrorizes your children. But combined with MS KB 832223 it did fix my client's issue with e-mail NDRs and "page cannot be displayed" errors in IE. [Cool]

(in reply to Guest)
Post #: 25

Page:   <<   < prev  1 [2] << Older Topic    Newer Topic >>
All Forums >> [Microsoft Exchange 2003] >> Message Routing >> RE: Exchange 2003 SMTP DNS NDR Relaying Denied 5.7.1 Page: <<   < prev  1 [2]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts