js-av 發表於 2008-9-24 11:27:14

對方信件是否DNS Black List封鎖?

<P><STRONG>系統環境如下:</STRONG></P>
<P>1. 作業系統:<FONT color=darkgreen>2003 Standard Server</FONT> <BR>2. 是否安防毒軟體:<FONT color=darkgreen>Symantec Antivirus</FONT><BR>3. 是否安裝防火牆:Netscreen 10gt Firewall </P>
<P>4. 自行架設 <SPAN class=t_tag onclick=tagshow(event) href="tag.php?name=DNS"><SPAN class=t_tag onclick=tagshow(event) href="tag.php?name=DNS">DNS</SPAN></SPAN><BR>5. 使用ADSL 固接制(<FONT color=darkgreen>固定 IP</FONT>)<BR>6. 是否使用 IP 分享器或路由器:防火牆內建NAT<BR>7. <SPAN class=t_tag onclick=tagshow(event) href="tag.php?name=MDaemon">MDaemon</SPAN>、AntiVirus 版本 :<FONT color=darkgreen>MDaemon PRO v9.6.6</FONT>,並沒有使用它的AntiVirus<BR>----------------------------------------------------------------------------------------------------------------------------------------------------------------</P>
<P><FONT color=blue>大陸分公司的mis同仁表示:最近常遭到退信,所以我看了一下smtp(in).log</FONT></P>
<P><FONT color=blue>以下有幾點疑問<FONT color=red>(紅色標示處)</FONT>,還請各位先進給小弟指點迷津,謝謝!!</FONT></P>
<P>&nbsp;</P>
<P>----------------------------------------------------------------------------------------------------------------------------------------------------------------<BR>Tue 2008-09-23 15:19:46: Session 1017; child 1; thread 3580<BR>Tue 2008-09-23 15:19:40: Accepting SMTP connection from <BR>Tue 2008-09-23 15:19:40: Performing PTR lookup (236.4.13.121.IN-ADDR.ARPA)<BR>Tue 2008-09-23 15:19:40: *&nbsp; D=236.4.13.121.IN-ADDR.ARPA TTL=(1440) PTR=[<FONT color=red>236.4.13.121.broad.dg.gd.dynamic.163data.com.cn</FONT><FONT color=red>] </FONT><FONT color=#0000ff>----&gt;該如何解釋這行呢?</FONT><BR>Tue 2008-09-23 15:19:40: *&nbsp; Gathering A records...<BR>Tue 2008-09-23 15:19:40: ---- End PTR results<BR>Tue 2008-09-23 15:19:40: --&gt; 220 mail.youngyak.com ESMTP MDaemon 9.6.6; Tue, 23 Sep 2008 15:19:40 +0800<BR>Tue 2008-09-23 15:19:40: &lt;-- HELO <FONT color=red>jiachen.kmip.net </FONT><FONT color=blue>----&gt;這裏指的應該是對方的mail Server名稱?</FONT></P>
<P>Tue 2008-09-23 15:19:40: Performing IP lookup (jiachen.kmip.net)<BR>Tue 2008-09-23 15:19:41: *&nbsp; D=jiachen.kmip.net TTL=(1) A=[<FONT color=red>121.13.4.236</FONT>]&nbsp;&nbsp;&nbsp;&nbsp; <FONT color=#0000ff>----&gt;這裏的IP指的應該是對方mail Server的IP?</FONT></P>
<P>Tue 2008-09-23 15:19:41: ---- End IP lookup results<BR>Tue 2008-09-23 15:19:41: --&gt; 250 mail.youngyak.com Hello 236.4.13.121.broad.dg.gd.dynamic.163data.com.cn, pleased to meet you<BR>Tue 2008-09-23 15:19:41: &lt;-- MAIL FROM: &lt;<A href="mailto:[email protected]">[email protected]</A>&gt;<BR>Tue 2008-09-23 15:19:41: Performing IP lookup (jiachen.kmip.net)<BR>Tue 2008-09-23 15:19:41: *&nbsp; D=jiachen.kmip.net TTL=(1) A=<BR>Tue 2008-09-23 15:19:41: ---- End IP lookup results<BR>Tue 2008-09-23 15:19:41: Performing SPF lookup (jiachen.kmip.net / 121.13.4.236)<BR>Tue 2008-09-23 15:19:45: *&nbsp; Result: none; no SPF record in DNS<BR>Tue 2008-09-23 15:19:45: ---- End SPF results<BR>Tue 2008-09-23 15:19:45: --&gt; 250 &lt;<A href="mailto:[email protected]">[email protected]</A>&gt;, Sender ok<BR>Tue 2008-09-23 15:19:45: &lt;-- RCPT TO: &lt;<A href="mailto:[email protected]">[email protected]</A>&gt;<BR>Tue 2008-09-23 15:19:45: <FONT color=red>Performing DNS-BL lookup (121.13.4.236 - connecting IP)&nbsp;&nbsp;&nbsp;&nbsp; <FONT color=#0000ff>----&gt;MDaemon v9.6.6在DNS Black List 的<FONT color=red><FONT color=#0000ff></FONT></FONT>預設值(圖一)</FONT></FONT></P>
<P>Tue 2008-09-23 15:19:45: <FONT color=red>*&nbsp; zen.spamhaus.org - failed&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </FONT><FONT color=#0000ff>----&gt;這裏的failed是指:連不到該網站嗎?</FONT><BR>Tue 2008-09-23 15:19:46: <FONT color=red>*&nbsp; cblless.anti-spam.org.cn - failed      &nbsp;&nbsp; </FONT><FONT color=#0000ff>----&gt;同上</FONT><BR>Tue 2008-09-23 15:19:46: ---- End DNS-BL results<BR>Tue 2008-09-23 15:19:46: <FONT color=red>--&gt; 550 121.13.4.236 listed at spamhaus, see </FONT><A href="http://www.spamhaus.org/"><FONT color=red>http://www.spamhaus.org</FONT></A>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; <FONT color=#0000ff>----&gt;為什麼上面出現了failed,而這裏卻又告知121.13.4.236被列在它的spamhaus裏?</FONT><BR>Tue 2008-09-23 15:19:46: SMTP session terminated (Bytes in/out: 89/280)<BR>Tue 2008-09-23 15:19:46: ----------<BR>Tue 2008-09-23 15:19:53: Session 1018; child 1; thread 1040<BR>Tue 2008-09-23 15:19:47: Accepting SMTP connection from <BR>Tue 2008-09-23 15:19:47: Performing PTR lookup (236.4.13.121.IN-ADDR.ARPA)<BR>Tue 2008-09-23 15:19:47: *&nbsp; D=236.4.13.121.IN-ADDR.ARPA TTL=(1402) PTR=<BR>Tue 2008-09-23 15:19:47: *&nbsp; Gathering A records...<BR>Tue 2008-09-23 15:19:51: ---- End PTR results<BR>Tue 2008-09-23 15:19:51: --&gt; 220 mail.youngyak.com ESMTP MDaemon 9.6.6; Tue, 23 Sep 2008 15:19:51 +0800<BR>Tue 2008-09-23 15:19:51: &lt;-- HELO jiachen.kmip.net<BR>Tue 2008-09-23 15:19:51: Performing IP lookup (jiachen.kmip.net)<BR>Tue 2008-09-23 15:19:51: *&nbsp; D=jiachen.kmip.net TTL=(1) A=<BR>Tue 2008-09-23 15:19:51: ---- End IP lookup results<BR>Tue 2008-09-23 15:19:51: --&gt; 250 mail.youngyak.com Hello 236.4.13.121.broad.dg.gd.dynamic.163data.com.cn, pleased to meet you<BR>Tue 2008-09-23 15:19:51: &lt;-- MAIL FROM: &lt;<A href="mailto:[email protected]">[email protected]</A>&gt;<BR>Tue 2008-09-23 15:19:51: Performing IP lookup (jiachen.kmip.net)<BR>Tue 2008-09-23 15:19:52: *&nbsp; D=jiachen.kmip.net TTL=(1) A=<BR>Tue 2008-09-23 15:19:52: ---- End IP lookup results<BR>Tue 2008-09-23 15:19:52: Performing SPF lookup (jiachen.kmip.net / 121.13.4.236)<BR>Tue 2008-09-23 15:19:52: *&nbsp; Result: none; no SPF record in DNS<BR>Tue 2008-09-23 15:19:52: ---- End SPF results<BR>Tue 2008-09-23 15:19:52: --&gt; 250 &lt;<A href="mailto:[email protected]">[email protected]</A>&gt;, Sender ok<BR>Tue 2008-09-23 15:19:52: &lt;-- RCPT TO: &lt;<A href="mailto:[email protected]">[email protected]</A>&gt;<BR>Tue 2008-09-23 15:19:52: Performing DNS-BL lookup (121.13.4.236 - connecting IP)<BR>Tue 2008-09-23 15:19:53: *&nbsp; zen.spamhaus.org - failed<BR>Tue 2008-09-23 15:19:53: *&nbsp; cblless.anti-spam.org.cn - failed<BR>Tue 2008-09-23 15:19:53: ---- End DNS-BL results<BR>Tue 2008-09-23 15:19:53: --&gt; 550 121.13.4.236 listed at spamhaus, see <A href="http://www.spamhaus.org/">http://www.spamhaus.org</A><BR>Tue 2008-09-23 15:19:53: SMTP session terminated (Bytes in/out: 96/280)<BR>Tue 2008-09-23 15:19:53: ----------<BR><BR>----------------------------------------------------------------------------------------------------------------------------------------------------------------<BR><FONT color=blue>圖一</FONT></P>
<P><IMG src="http://i129.photobucket.com/albums/p226/johnson784069/23-01.jpg" border=0></P>
<P>&nbsp;</P>
<P><FONT color=blue>圖二  為了解決這個問題,我將大陸分公司寄件者加入到DNS Black List 項中的 White List 中,這樣對嗎?</FONT></P>
<P><FONT color=black><IMG src="http://i129.photobucket.com/albums/p226/johnson784069/23-02.jpg" border=0></FONT></P>

[ 本文最後由 js-av 於 2008-9-24 01:25 PM 編輯 ]

MarchFun 發表於 2008-9-24 15:35:48

<P>zen.spamhaus.org - failed</P>
<P>&nbsp;</P>
<P>failed 表示未通過檢查,也就是說該寄信的主機,其 IP 名列黑名單中。整封信無法成功寄送的原因也就在此。</P>
<P>&nbsp;</P>
<P>既然對方是你們的分公司,直接將 IP 加入 Trust IP 中可以免除許多麻煩。</P>

js-av 發表於 2008-9-24 16:01:00

<P>感謝MarchFun的回答!</P>
<P>&nbsp;</P>
<P>但是目前大陸分公司是採用動態IP來連網(非固定IP)</P>
<P>這又該怎麼解決呢?</P>
<P>&nbsp;</P>
<P>(1)是不是想辦法把分公司的人,都加入到白名單才可以?又要在哪裏加入呢?</P>

[ 本文最後由 js-av 於 2008-9-24 04:02 PM 編輯 ]

MarchFun 發表於 2008-9-24 22:45:43

無法固定 IP 的話,那就加入 Trust Host

js-av 發表於 2008-9-26 10:14:15

<P><FONT color=blue><STRONG>小弟是初學者,很</STRONG><STRONG>感謝MarchFun 大大的回答!</STRONG></FONT></P>
<P><STRONG></STRONG>&nbsp;</P>
<P><STRONG><FONT color=blue>把完整的圖po上來,讓有興趣的人做個筆記</FONT></STRONG></P>
<P><STRONG><FONT color=blue>這樣子做應該沒錯吧?!</FONT></STRONG></P>
<P>&nbsp;</P>
<P>&nbsp;</P>
<P>(1)Security&nbsp; ---&gt;&nbsp; Relay / Trusts / Tarpit.....</P>
<P><IMG src="http://i129.photobucket.com/albums/p226/johnson784069/bb1.jpg" border=0></P>
<P>&nbsp;</P>
<P>&nbsp;</P>
<P>(2)Trusted Hosts頁 ---&gt; 將寄件者的Domain Name加入(奇怪!我從這裏都加不進去,所以我改用WebAdmin去加,如下圖三)</P>
<P><IMG src="http://i129.photobucket.com/albums/p226/johnson784069/bb2.jpg" border=0></P>
<P>&nbsp;</P>
<P>&nbsp;</P>
<P>(3)左邊選擇”中轉/信任/阻止”---&gt; 信任主機 頁 ----&gt; 在”信任域”中輸入寄件者的Domain Name後按「添加」鈕。完成!</P>
<P><IMG src="http://i129.photobucket.com/albums/p226/johnson784069/bb3.jpg" border=0></P>

[ 本文最後由 js-av 於 2008-9-26 10:20 AM 編輯 ]
頁: [1]
檢視完整版本: 對方信件是否DNS Black List封鎖?