Google Groups no longer supports new Usenet posts or subscriptions. Historical content remains viewable.
Dismiss

not unique id

14 views
Skip to first unread message

Hans Mayer

unread,
Dec 27, 2017, 5:06:56 AM12/27/17
to

Dear All,

Since days IP 212.95.239.234 tries to use our gateway as relay. It happens exactly in 4 minute intervals. See below.

What I am wondering that this ID ( in this case vBPDgB9d017471 ) is always the same. I thought this is unique for each attempt. But obviously not.

I tried to find some documentation but I am not sure how this field is really called. Any hint is welcome.

I am using sendmail Version 8.15.2


Kind regards
Hans

--

Here the last 10 entries of syslog:

2017-12-27T10:11:00+01:00 server sendmail[15847]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:28:49, xdelay=00:00:00, mailer=esmtp, pri=59005175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:15:01+01:00 server sendmail[15947]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:32:50, xdelay=00:00:01, mailer=esmtp, pri=59095175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:19:01+01:00 server sendmail[16053]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:36:50, xdelay=00:00:01, mailer=esmtp, pri=59185175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:23:07+01:00 server sendmail[16162]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:40:56, xdelay=00:00:01, mailer=esmtp, pri=59275175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:27:00+01:00 server sendmail[16372]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:44:49, xdelay=00:00:00, mailer=esmtp, pri=59365175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:31:00+01:00 server sendmail[16490]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:48:49, xdelay=00:00:00, mailer=esmtp, pri=59455175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:35:00+01:00 server sendmail[16585]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:52:49, xdelay=00:00:00, mailer=esmtp, pri=59545175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:39:00+01:00 server sendmail[16707]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+19:56:49, xdelay=00:00:00, mailer=esmtp, pri=59635175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:43:01+01:00 server sendmail[16846]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+20:00:50, xdelay=00:00:01, mailer=esmtp, pri=59725175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied
2017-12-27T10:47:01+01:00 server sendmail[16931]: [ID 801593 mail.info] vBPDgB9d017471: to=<ad...@account.email>, delay=1+20:04:50, xdelay=00:00:00, mailer=esmtp, pri=59815175, relay=account.email. [212.95.239.234], dsn=4.7.1, stat=Deferred: 454 4.7.1 <ad...@account.email>: Relay access denied


Claus Aßmann

unread,
Dec 27, 2017, 6:19:09 AM12/27/17
to
Hans Mayer wrote:

> Since days IP 212.95.239.234 tries to use our gateway as relay. It happens exactly in 4 minute intervals. See below.

Seems you are misreading the log...

> What I am wondering that this ID ( in this case vBPDgB9d017471 ) is always the same. I thought this is unique
> for each attempt. But obviously not.

See above...

> 2017-12-27T10:11:00+01:00 server sendmail[15847]: [ID 801593 mail.info] vBPDgB9d017471:
> to=<ad...@account.email>, delay=1+19:28:49, xdelay=00:00:00, mailer=esmtp, pri=59005175, relay=account.email.

This is (queued) mail from your host to <ad...@account.email> (see
the delay= entry?) and the error is from relay=account.email.
Someone (intentionally?) misconfigured their DNS or MTA.

Check your mail queue.


--
Note: please read the netiquette before posting. I will almost never
reply to top-postings which include a full copy of the previous
article(s) at the end because it's annoying, shows that the poster
is too lazy to trim his article, and it's wasting the time of all readers.

Hans Mayer

unread,
Dec 27, 2017, 2:19:18 PM12/27/17
to

Dear Claus,

Many thanks. Yes, you are right. You are always right, therefore you are so helpful. Thanks.

It was in the mail-queue in one of our incoming gateways. This e-mail had a virus and it was caught. For some reason it was hanging in the queue. I can't remember this happened before.

Kind regards
Hans

--


0 new messages