From owner-freebsd-questions@freebsd.org Mon Jun 22 10:27:38 2020 Return-Path: Delivered-To: freebsd-questions@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id B0BCE347396 for ; Mon, 22 Jun 2020 10:27:38 +0000 (UTC) (envelope-from lysfjord.daniel@smokepit.net) Received: from smtp-out.smokepit.net (smtp-out.smokepit.net [18.200.56.156]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "smtp-out.smokepit.net", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 49r5Fj53z9z4X4l for ; Mon, 22 Jun 2020 10:27:37 +0000 (UTC) (envelope-from lysfjord.daniel@smokepit.net) Received: from cm-84.215.33.184.getinternet.no ([84.215.33.184] helo=smokepit.net) by smtp-out.smokepit.net with esmtpsa (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1jnJfs-0002kq-5x for freebsd-questions@freebsd.org; Mon, 22 Jun 2020 10:27:36 +0000 Received: from yggdrasil.lan.smokepit.net ([10.0.0.200]) by smokepit.net with esmtpsa (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (Exim 4.94 (FreeBSD)) (envelope-from ) id 1jnJfm-00002X-Dg for freebsd-questions@freebsd.org; Mon, 22 Jun 2020 12:27:35 +0200 Subject: Re: Exim - retry time not reached for any host To: freebsd-questions@freebsd.org References: <2534646.NQNxk83B2J@curlew> <2bb9b869-087f-0de7-a092-5753e6528a10@smokepit.net> <2063278.3V7qYkmoPJ@curlew> From: Daniel Lysfjord Message-ID: Date: Mon, 22 Jun 2020 12:27:30 +0200 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.9.0 MIME-Version: 1.0 In-Reply-To: <2063278.3V7qYkmoPJ@curlew> Content-Type: text/plain; charset=utf-8; format=flowed Content-Language: en-US Content-Transfer-Encoding: 7bit X-Spam-Report: Action: no action Symbol: ARC_NA(0.00) Symbol: RCVD_VIA_SMTP_AUTH(0.00) Symbol: BAYES_HAM(-0.30) Symbol: FROM_HAS_DN(0.00) Symbol: TO_MATCH_ENVRCPT_ALL(0.00) Symbol: MIME_GOOD(-0.10) Symbol: TO_DN_NONE(0.00) Symbol: RCPT_COUNT_ONE(0.00) Symbol: RCVD_COUNT_ONE(0.00) Symbol: FROM_EQ_ENVFROM(0.00) Symbol: MIME_TRACE(0.00) Symbol: RCVD_TLS_ALL(0.00) Symbol: MID_RHS_MATCH_FROM(0.00) Message-ID: f9413c03-db27-52de-6a1d-48c2d55df04f@smokepit.net X-Rspamd-Queue-Id: 49r5Fj53z9z4X4l X-Spamd-Bar: --- X-Spamd-Result: default: False [-3.00 / 15.00]; RCVD_VIA_SMTP_AUTH(0.00)[]; ARC_NA(0.00)[]; R_DKIM_ALLOW(-0.20)[smokepit.net:s=loke]; NEURAL_HAM_MEDIUM(-1.02)[-1.019]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; R_SPF_ALLOW(-0.20)[+ip4:18.200.56.156]; MIME_GOOD(-0.10)[text/plain]; TO_DN_NONE(0.00)[]; NEURAL_HAM_LONG(-1.04)[-1.036]; RCPT_COUNT_ONE(0.00)[1]; RCVD_COUNT_THREE(0.00)[3]; NEURAL_SPAM_SHORT(0.05)[0.053]; DKIM_TRACE(0.00)[smokepit.net:+]; DMARC_POLICY_ALLOW(-0.50)[smokepit.net,reject]; FROM_EQ_ENVFROM(0.00)[]; MIME_TRACE(0.00)[0:+]; ASN(0.00)[asn:16509, ipnet:18.200.0.0/16, country:US]; RCVD_TLS_ALL(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; RECEIVED_SPAMHAUS_PBL(0.00)[84.215.33.184:received] X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.33 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 22 Jun 2020 10:27:38 -0000 On 22.06.2020 10:46, Mike Clarke wrote: > On Monday, 22 June 2020 08:36:45 BST Daniel Lysfjord via freebsd-questions wrote: > > >> To clarify: did 4.94 fail to connect every time on a *new* email? > > > Yes, every attempt to send a new email failed on the initial connection. It would eventually > succeed after several retries but that could take an hour or more. > > > In the case of the example for which I showed results there are 4 IP addresses for > mail.gridhost.co.uk so there were 4 failures for the initial attempt to connect and 4 more for > each retry. > > > When a connection was finally made it was with the first IP tried for that attempt but I don't > know if this was the case for every successful connection. > > In your route_list, you have mail3.gridhost.co.uk, not that it should matter, but you could try changing that to mail.gridhost.co.uk (or, possibly 95.142.156.18). It seems like your successful attempt are at 95.142.156.18(mail.gridhost.co.uk), but fails at 95.142.156.8(mail-beta.gridhost.co.uk), 95.142.156.16(mail1-a.eqx.gridhost.co.uk) and 95.142.156.28(mail4-e.eqx.gridhost.co.uk). Could it be that you're finding a corner case in exim, because of that circular dns resolving? mail.gridhost.co.uk does have multiple A records, one of those has a PTR back to mail.gridhost.co.uk, where the rest does not. Grasping at straws here^^ If this is of no help, I can't see any other way around than using tcpdump on the connections, to see what's going on. The log line: TLS error '(SSL_connect): error:00000000:lib(0):func(0):reason(0) is in my search history, so I've been hit with something kicking out the same error somewhere some time, but I can't remember what it was:) What SSL library is your exim compiled with? Regards, Daniel