From nobody Fri May 19 05:32:01 2023 X-Original-To: questions@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4QMwTQ4r6Hz4BTbZ for ; Fri, 19 May 2023 05:32:26 +0000 (UTC) (envelope-from freebsd@gushi.org) Received: from prime.gushi.org (prime.gushi.org [IPv6:2620:137:6000:10::142]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "prime.gushi.org", Issuer "RapidSSL Global TLS RSA4096 SHA256 2022 CA1" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 4QMwTQ2Xgrz3RGc for ; Fri, 19 May 2023 05:32:26 +0000 (UTC) (envelope-from freebsd@gushi.org) Authentication-Results: mx1.freebsd.org; none Received: from smtpclient.apple ([149.20.66.196]) (authenticated bits=0) by prime.gushi.org (8.16.1/8.16.1) with ESMTPSA id 34J5WCPT024155 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Thu, 18 May 2023 22:32:13 -0700 (PDT) (envelope-from freebsd@gushi.org) DKIM-Filter: OpenDKIM Filter v2.10.3 prime.gushi.org 34J5WCPT024155 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gushi.org; s=prime2014; t=1684474334; bh=UB/lV9rR/xQ+nbeoWZq+F3fP3iwHbqFRy6WRgsYdrO4=; h=Subject:From:In-Reply-To:Date:Cc:References:To; z=Subject:=20Re:=20sendmail=20error,=20"MX=20list=20for=20mydomain. com=20points=20back=20to=0D=0A=20server.mydomain.com"|From:=20"Dan =20Mahoney=20(Ports)"=20|In-Reply-To:=20<3da26e b675ecd5d10947fb53fcf3524a@blackfoot.net>|Date:=20Fri,=2019=20May= 202023=2001:32:01=20-0400|Cc:=20Dewayne=20,=0D=0A=20questions@freebsd.org|References:=20<303e35e4d8 9e68dcd9863239dcda568e@blackfoot.net>=0D=0A=20=0D=0A=20<30b97aa95162c1 63c1781ba1a0fa8e25@blackfoot.net>=0D=0A=20=0D=0A=20=0D=0A=20<15AF7ED7-BBD9-428D-939F-4AA5B349C578@gush i.org>=0D=0A=20<66db9ba3bd66fcc56affdbf7a2621021@blackfoot.net>=0D =0A=20<2f8bca59462afe206043bea73241bbf2@blackfoot.net>=0D=0A=20=0D=0A=20<3da26eb675e cd5d10947fb53fcf3524a@blackfoot.net>|To:=20vagabond=20; b=HmHDlATMgQBKraf3WCnI5pHKc0Ym/pQ0Wd6K6LRhdFWrXL5i5kOcl83X34IGpvEyt rFavrAp4LjenQfdIXGPxdNyqSknGPiOvu00Thg+Ymg3tXRWNCfKjjIySRIxXe0j8ii zBiYcANEFkWGOYR++cFrLP2WXcKxS4fyhbNqAK9EFaiR3Mf95fRPSXdj4CA/kteZR3 a8qNGCluapcuTUfIbsLYpH4/hTlPlJN/awHowv3E/TcJnK7VNnpO3uI3whw0qRyjWr kIUkY77GaVI0ppKqvFgXjjh1S09fy4n5KZ8lPDjszUSHHh+xkBolLbxkYCSHnzrrLx wBPIRtxHtyc9w== X-Authentication-Warning: prime.gushi.org: Host [149.20.66.196] claimed to be smtpclient.apple Content-Type: text/plain; charset=utf-8 List-Id: User questions List-Archive: https://lists.freebsd.org/archives/freebsd-questions List-Help: List-Post: List-Subscribe: List-Unsubscribe: Sender: owner-freebsd-questions@freebsd.org X-BeenThere: freebsd-questions@freebsd.org Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3731.500.231\)) Subject: Re: sendmail error, "MX list for mydomain.com points back to server.mydomain.com" From: "Dan Mahoney (Ports)" In-Reply-To: <3da26eb675ecd5d10947fb53fcf3524a@blackfoot.net> Date: Fri, 19 May 2023 01:32:01 -0400 Cc: Dewayne , questions@freebsd.org Content-Transfer-Encoding: quoted-printable Message-Id: <6068541D-A81B-45F0-B961-FD5CD6969FA0@gushi.org> References: <303e35e4d89e68dcd9863239dcda568e@blackfoot.net> <30b97aa95162c163c1781ba1a0fa8e25@blackfoot.net> <15AF7ED7-BBD9-428D-939F-4AA5B349C578@gushi.org> <66db9ba3bd66fcc56affdbf7a2621021@blackfoot.net> <2f8bca59462afe206043bea73241bbf2@blackfoot.net> <3da26eb675ecd5d10947fb53fcf3524a@blackfoot.net> To: vagabond X-Mailer: Apple Mail (2.3731.500.231) X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.6.4 (prime.gushi.org [149.20.68.142]); Fri, 19 May 2023 05:32:14 +0000 (UTC) X-Rspamd-Queue-Id: 4QMwTQ2Xgrz3RGc X-Spamd-Bar: ---- X-Spamd-Result: default: False [-4.00 / 15.00]; REPLY(-4.00)[]; ASN(0.00)[asn:393507, ipnet:2620:137:6000::/44, country:US] X-Rspamd-Pre-Result: action=no action; module=replies; Message is reply to one we originated X-ThisMailContainsUnwantedMimeParts: N > On May 19, 2023, at 12:43 AM, vagabond wrote: >=20 > On 2023-05-18 19:44, Dan Mahoney (Ports) wrote: >> Do you see it? It=E2=80=99s subtle. >> Your system is asking your own 127.0.0.1 DNS for the AAAA for >> ns.dreamchaser.org (because sendmail attempts ipv6 before it attempts >> ipv4) >=20 > ok. >=20 >> You forgot a trailing . in your NS records. Your DNS kicks back that >> =E2=80=9Chey, I don=E2=80=99t know about ns.dreamchaser.org=E2=80=9D = so it gives you an SOA >> record. (answer =3D 0, authority =3D 1) >> is doing lookups for ns.dreamchaser.org.dreamchaser.org because of = that. >> Post your zone file? >=20 > Staring hard, but I still don't see it. > This is a cut down one (removed comments and other hosts) > which still fails. > secondary names have been changed. DNS is public. Still not sure why you feel the need to do that. >> Here=E2=80=99s what I think it happening: (Have a reference here: >> Your system is looking at its own rdns/fdns, and discovering that its >> hostname is ns.dreamchaser.org.dreamchaser.org (probably because your >> primary IP is not present in /etc/hosts). It attempts to deliver to >> itself, and finds that mail SHOULD come to it (since your >> misconfiguration says your MX is ns.dreamchaser.org.dreamchaser.org >> AND that=E2=80=99s what you resolve to, but = ns.dreamchaser.org.dreamchaser.org >> isn=E2=80=99t in /etc/mail/local-host-names. >=20 > # cat /etc/hosts > ::1 localhost.dreamchaser.org. localhost > 127.0.0.1 localhost.dreamchaser.org. localhost > 66.109.141.57 ns.dreamchaser.org. ns trailing dots don=E2=80=99t typically get used in /etc/hosts, but = they=E2=80=99re probably harmless here. I=E2=80=99d remove them. >> * Put your primary addresses in /etc/hosts =E2=80=94 there are = numerous >> documented cases of sendmail ignoring /etc/hosts but it *might* help >> clue it in to your proper hostname at least. >=20 > see above >=20 >> * Fix your forward and reverse DNS >> * (and in fact, stop faking it out. Fix it at your hosting provider. >> if your hosting provider is taking this long, find another one) You had complained of bogus entries, and of them being slow, that was = what I had meant. In a perfect world, you should not need to host a = zone file for something you=E2=80=99re not authoritative for, like = 141.109.66.in-addr.arpa. as you=E2=80=99re presently doing. It=E2=80=99s = a useful workaround, but will break lookups to anything else in that = subnet. Everything in your zone file *looks* right here. Is your ISP giving you = any kind of ipv6 address? If you type =E2=80=9Chostname=E2=80=9D you do get your FQDN, right? -Dan