firewall IP as Originating IP for emails

Steve Cowles steve at stevecowles.com
Thu Sep 9 11:08:15 UTC 2004


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

On Stardate 6609.08, Mrs. Geeta Thanu said:
| Hi Gurus,
|
| We have our primary DNS , webserver, email server everything inside
| firewall, all natted to WAN IP.
|
| Hence our mails are having the originating IP as firewall's IP ad hence
| some domains are rejecting our mails.
|
| The webserver and email servers IP are same since they both are on the
| same machine.
|
| can anybody please guide me what rules I am doing mistake in firewall and
| how this problem can be solved.

Based on my understanding of the above (nat'd), all outbound packets
from any system behind your firewall *should* have their source IP
address rewritten to the public IP address of your firewall.

Exactly what rejection is being logged by *some domains* as you stated
above? Can you show the DSN or a logfile entry from maillog? Since you
state *some domains* are rejecting e-mail, I suspect that this could be
a DNS PTR record problem, not a firewall rule problem.

- --
Steve Cowles
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.5 (MingW32)
Comment: Using GnuPG with Thunderbird - http://enigmail.mozdev.org

iD8DBQFBQDmf+EiWPcdLGmQRAmlgAJ9SbYiOzEs/cM25GyuFX5aKGcFxAwCdE5nb
YAOfHqt5qWMpnqxKmNHIhTM=
=Erfc
-----END PGP SIGNATURE-----





More information about the redhat-list mailing list