This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

UTM verschickt keine Benachrichtung mehr raus?

Hallo,

ich bekomme von der UTM keine E-Mails mehr? Kann ich irgendwo prüfen, warum nichts mehr verschickt wird?



This thread was automatically locked due to age.
Parents
  • Kurz und schmerzlos:

    EMail Protection / Mailmanager / Spool

    und

    Logging & Reporting / View Log Files / Admin Notifications

     

    CS

     

    Sophos Certified Architect (UTM + XG)

  • Hallo,

    unter "EMail Protection / Mailmanager / Spool" steht leider nicht.

    Aber unter "Logging & Reporting / View Log Files / Admin Notifications"

     

    Reload
    2017:05:03-20:55:12 sophos postfix/smtp[682]: E6E0740C50: to=<test.test1@gmail.com>, relay=localhost[127.0.0.1]:25, delay=0.04, delays=0.02/0.01/0.01/0, dsn=2.0.0, status=sent (250 OK id=1d5zQe-0000B1-37)
    2017:05:03-20:55:12 sophos postfix/qmgr[2389]: E6E0740C50: removed
    2017:05:03-20:55:26 sophos notifier[711]: processing notification request for INFO-005
    2017:05:03-20:55:26 sophos postfix/pickup[32086]: D218040C50: uid=0 from=<do-not-reply@fw-notify.net>
    2017:05:03-20:55:26 sophos postfix/cleanup[680]: D218040C50: message-id=<2162-00711-1493837726@sophos>
    2017:05:03-20:55:26 sophos notifier[711]: snmp traps for INFO-005 are disabled
    2017:05:03-20:55:26 sophos notifier[711]: successfully processed request for notification
    2017:05:03-20:55:26 sophos postfix/qmgr[2389]: D218040C50: from=<do-not-reply@fw-notify.net>, size=823, nrcpt=1 (queue active)
    2017:05:03-20:55:26 sophos postfix/smtp[682]: D218040C50: to=<test.test1@gmail.com>, relay=localhost[127.0.0.1]:25, delay=0.02, delays=0.01/0/0/0.01, dsn=2.0.0, status=sent (250 OK id=1d5zQs-0000BW-2o)
    2017:05:03-20:55:26 sophos postfix/qmgr[2389]: D218040C50: removed

  • Es sieht so aus, als wäre die Mail rausgegangen.

    Ob die Gegenseite eine Fehlermeldung gebracht hat findest du beim SMTP Log.

     

    Sophos Certified Architect (UTM + XG)

  • Live-Protokoll: SMTP-Proxy Filter: Autoscroll Reload 2017:05:04-20:15:11 sophos exim-in[14662]: 2017-05-04 20:15:11 1d6LHT-0003oU-2L <= do-not-reply@fw-notify.net H=localhost [127.0.0.1]:56650 P=esmtp S=1020 id=2162-14656-1493921711@sophos 2017:05:04-20:15:11 sophos exim-in[14662]: 2017-05-04 20:15:11 SMTP connection from localhost [127.0.0.1]:56650 closed by QUIT 2017:05:04-20:15:13 sophos smtpd[4807]: QMGR[4807]: 1d6LHT-0003oU-2L moved to work queue 2017:05:04-20:15:20 sophos smtpd[14699]: SCANNER[14699]: 1d6LHc-0003p5-7V <= do-not-reply@fw-notify.net R=1d6LHT-0003oU-2L P=INPUT S=273 2017:05:04-20:15:20 sophos smtpd[14699]: SCANNER[14699]: id="1000" severity="info" sys="SecureMail" sub="smtp" name="email passed" srcip="127.0.0.1" from="do-not-reply@fw-notify.net" to="mustermann@gmail.com" subject="[sophos][INFO-005] Successful WebAdmin login" queueid="1d6LHc-0003p5-7V" size="273" 2017:05:04-20:15:20 sophos smtpd[14699]: SCANNER[14699]: 1d6LHT-0003oU-2L => work R=SCANNER T=SCANNER 2017:05:04-20:15:20 sophos smtpd[14699]: SCANNER[14699]: 1d6LHT-0003oU-2L Completed 2017:05:04-20:15:20 sophos exim-out[14701]: 2017-05-04 20:15:20 1d6LHc-0003p5-7V ** mustermann@gmail.com P=<do-not-reply@fw-notify.net> R=dnslookup T=remote_smtp: SMTP error from remote mail server after end of data: host gmail-smtp-in.l.google.com [74.125.133.26]: 550-5.7.1 [185.22.143.233] The IP you're using to send mail is not authorized to\n550-5.7.1 send email directly to our servers. Please use the SMTP relay at your\n550-5.7.1 service provider instead. Learn more at\n550 5.7.1 support.google.com/.../ m66si2208664wmg.22 - gsmtp 2017:05:04-20:15:20 sophos exim-out[14705]: 2017-05-04 20:15:20 1d6LHc-0003pB-2v <= <> R=1d6LHc-0003p5-7V U=exim P=local S=2221 2017:05:04-20:15:20 sophos exim-out[14701]: 2017-05-04 20:15:20 1d6LHc-0003p5-7V Completed 2017:05:04-20:15:49 sophos smtpd[14699]: SCANNER[14699]: Nothing to do, exiting. 2017:05:04-20:16:00 sophos exim-out[14760]: 2017-05-04 20:16:00 Start queue run: pid=14760 2017:05:04-20:16:05 sophos exim-out[14763]: 2017-05-04 20:16:05 1d6LHc-0003pB-2v => do-not-reply@fw-notify.net P=<> R=dnslookup T=remote_smtp H=deadmail.fw-notify.net [93.189.156.232]:25 C="250 OK id=1d6LIL-00056R-3j" 2017:05:04-20:16:05 sophos exim-out[14763]: 2017-05-04 20:16:05 1d6LHc-0003pB-2v Completed 2017:05:04-20:16:05 sophos exim-out[14760]: 2017-05-04 20:16:05 End queue run: pid=14760 2017:05:04-20:17:00 sophos exim-out[14834]: 2017-05-04 20:17:00 Start queue run: pid=14834 2017:05:04-20:17:00 sophos exim-out[14834]: 2017-05-04 20:17:00 End queue run: pid=14834 2017:05:04-20:18:00 sophos exim-out[14955]: 2017-05-04 20:18:00 Start queue run: pid=14955 2017:05:04-20:18:00 sophos exim-out[14955]: 2017-05-04 20:18:00 End queue run: pid=14955 2017:05:04-20:19:00 sophos exim-out[15031]: 2017-05-04 20:19:00 Start queue run: pid=15031 2017:05:04-20:19:00 sophos exim-out[15031]: 2017-05-04 20:19:00 End queue run: pid=15031 2017:05:04-20:20:00 sophos exim-out[15102]: 2017-05-04 20:20:00 Start queue run: pid=15102 2017:05:04-20:20:00 sophos exim-out[15102]: 2017-05-04 20:20:00 End queue run: pid=15102 2017:05:04-20:21:00 sophos exim-out[15255]: 2017-05-04 20:21:00 Start queue run: pid=15255 2017:05:04-20:21:00 sophos exim-out[15255]: 2017-05-04 20:21:00 End queue run: pid=15255 2017:05:04-20:22:00 sophos exim-out[15326]: 2017-05-04 20:22:00 Start queue run: pid=15326 2017:05:04-20:22:00 sophos exim-out[15326]: 2017-05-04 20:22:00 End queue run: pid=15326 2017:05:04-20:23:00 sophos exim-out[15401]: 2017-05-04 20:23:00 Start queue run: pid=15401 2017:05:04-20:23:00 sophos exim-out[15401]: 2017-05-04 20:23:00 End queue run: pid=15401 2017:05:04-20:24:00 sophos exim-out[15487]: 2017-05-04 20:24:00 Start queue run: pid=15487 2017:05:04-20:24:00 sophos exim-out[15487]: 2017-05-04 20:24:00 End queue run: pid=15487 2017:05:04-20:25:00 sophos exim-out[15563]: 2017-05-04 20:25:00 Start queue run: pid=15563 2017:05:04-20:25:00 sophos exim-out[15563]: 2017-05-04 20:25:00 End queue run: pid=15563 2017:05:04-20:26:00 sophos exim-out[15688]: 2017-05-04 20:26:00 Start queue run: pid=15688 2017:05:04-20:26:00 sophos exim-out[15688]: 2017-05-04 20:26:00 End queue run: pid=15688 2017:05:04-20:27:00 sophos exim-out[15852]: 2017-05-04 20:27:00 Start queue run: pid=15852 2017:05:04-20:27:00 sophos exim-out[15852]: 2017-05-04 20:27:00 End queue run: pid=15852 2017:05:04-20:28:00 sophos exim-out[15922]: 2017-05-04 20:28:00 Start queue run: pid=15922 2017:05:04-20:28:00 sophos exim-out[15922]: 2017-05-04 20:28:00 End queue run: pid=15922 2017:05:04-20:29:00 sophos exim-out[15998]: 2017-05-04 20:29:00 Start queue run: pid=15998 2017:05:04-20:29:00 sophos exim-out[15998]: 2017-05-04 20:29:00 End queue run: pid=15998 2017:05:04-20:30:00 sophos exim-out[16069]: 2017-05-04 20:30:00 Start queue run: pid=16069 2017:05:04-20:30:00 sophos exim-out[16069]: 2017-05-04 20:30:00 End queue run: pid=16069 2017:05:04-20:31:00 sophos exim-out[16240]: 2017-05-04 20:31:00 Start queue run: pid=16240 2017:05:04-20:31:00 sophos exim-out[16240]: 2017-05-04 20:31:00 End queue run: pid=16240 2017:05:04-20:32:00 sophos exim-out[16311]: 2017-05-04 20:32:00 Start queue run: pid=16311 2017:05:04-20:32:00 sophos exim-out[16311]: 2017-05-04 20:32:00 End queue run: pid=16311 2017:05:04-20:33:00 sophos exim-out[16431]: 2017-05-04 20:33:00 Start queue run: pid=16431 2017:05:04-20:33:00 sophos exim-out[16431]: 2017-05-04 20:33:00 End queue run: pid=16431 2017:05:04-20:34:00 sophos exim-out[16502]: 2017-05-04 20:34:00 Start queue run: pid=16502 2017:05:04-20:34:00 sophos exim-out[16502]: 2017-05-04 20:34:00 End queue run: pid=16502 2017:05:04-20:35:00 sophos exim-out[16578]: 2017-05-04 20:35:00 Start queue run: pid=16578 2017:05:04-20:35:00 sophos exim-out[16578]: 2017-05-04 20:35:00 End queue run: pid=16578

     

    Auch mit einer anderen E-Mail Adresse gehen keine E-Mails raus ?!?

     

    Danke

     

     

  • Die Mails scheinen als "do-not-reply@fw-notify.net" von der Sophos aus raus gesendet zu werden. Wenn der Empfänger nun eine Spamprüfung macht (besonders RDNS, SPF-Prüfung), wird diese Mail weg geblockt werden...

    Richtig wäre es, die Benachrichtigung als "firwall@domäne.de" raus schicken zu lassen und dann entsprechend auch in seiner DNS/Domänenverwaltung bzw. auf der Internetleitung die entsprechenden Einträge gesetzt zu haben. So muss es zumindest im Businessumfeld sein bzw. generell wenn Mailverkehr über die Sophos abgewickelt wird.

     

    Steve

  • Da steht es doch:

    SMTP error from remote mail server after end of data: host gmail-smtp-in.l.google.com [74.125.133.26]: 550-5.7.1 [185.22.143.233] The IP you're using to send mail is not authorized to\n550-5.7.1 send email directly to our servers. Please use the SMTP relay at your\n550-5.7.1 service provider instead.

     

    Von einer Einwahladresse ohne vernünftigen RDNS = HELO String nimmt kein anständiger Mailserver mehr Post an.

    Lieber über Deinen Mailprovider leiten:

    Email Protection / SMTP / Advanced / Smarthost Settings

    und

    Management / Notification / Advanced

    Viel Glück!

    CS

     

    Sophos Certified Architect (UTM + XG)

  • Irgendwie funktioniert es noch nicht. Im SMTP-Log steht 

    2017:05:28-12:01:00 sophos exim-out[15424]: 2017-05-28 12:01:00 Start queue run: pid=15424
    2017:05:28-12:01:00 sophos exim-out[15424]: 2017-05-28 12:01:00 End queue run: pid=15424
    2017:05:28-12:02:00 sophos exim-out[15512]: 2017-05-28 12:02:00 Start queue run: pid=15512
    2017:05:28-12:02:00 sophos exim-out[15512]: 2017-05-28 12:02:00 End queue run: pid=15512
    2017:05:28-12:03:00 sophos exim-out[15639]: 2017-05-28 12:03:00 Start queue run: pid=15639
    2017:05:28-12:03:00 sophos exim-out[15639]: 2017-05-28 12:03:00 End queue run: pid=15639
    2017:05:28-12:04:00 sophos exim-out[15709]: 2017-05-28 12:04:00 Start queue run: pid=15709
    2017:05:28-12:04:00 sophos exim-out[15709]: 2017-05-28 12:04:00 End queue run: pid=15709
    2017:05:28-12:05:00 sophos exim-out[15786]: 2017-05-28 12:05:00 Start queue run: pid=15786
    2017:05:28-12:05:00 sophos exim-out[15786]: 2017-05-28 12:05:00 End queue run: pid=15786
    2017:05:28-12:06:00 sophos exim-out[16209]: 2017-05-28 12:06:00 Start queue run: pid=16209
    2017:05:28-12:06:00 sophos exim-out[16209]: 2017-05-28 12:06:00 End queue run: pid=16209
     
     
    Wo muß ich sonst noch was anpassen?
     
    Da stimmt was mit den Ports nicht,
     
    2017:05:28-12:24:51 sophos smtpd[4800]: MASTER[4800]: (Re-)loading configuration from Confd
    2017:05:28-12:24:51 sophos smtpd[4800]: MASTER[4800]: QR globally disabled, status one set to 'disabled'
    2017:05:28-12:24:51 sophos smtpd[4800]: MASTER[4800]: QR globally disabled, status two set to 'disabled'
    2017:05:28-12:24:51 sophos exim-in[4886]: 2017-05-28 12:24:51 pid 4886: SIGHUP received: re-exec daemon
    2017:05:28-12:24:51 sophos exim-in[4886]: 2017-05-28 12:24:51 exim 4.82_1-5b7a7c0-XX daemon started: pid=4886, no queue runs, listening for SMTP on port 25 (IPv4) port 587 (IPv4) and for SMTPS on port 465 (IPv4)
    2017:05:28-12:25:00 sophos exim-out[18380]: 2017-05-28 12:25:00 Start queue run: pid=18380
    2017:05:28-12:25:00 sophos exim-out[18380]: 2017-05-28 12:25:00 End queue run: pid=18380
     
Reply
  • Irgendwie funktioniert es noch nicht. Im SMTP-Log steht 

    2017:05:28-12:01:00 sophos exim-out[15424]: 2017-05-28 12:01:00 Start queue run: pid=15424
    2017:05:28-12:01:00 sophos exim-out[15424]: 2017-05-28 12:01:00 End queue run: pid=15424
    2017:05:28-12:02:00 sophos exim-out[15512]: 2017-05-28 12:02:00 Start queue run: pid=15512
    2017:05:28-12:02:00 sophos exim-out[15512]: 2017-05-28 12:02:00 End queue run: pid=15512
    2017:05:28-12:03:00 sophos exim-out[15639]: 2017-05-28 12:03:00 Start queue run: pid=15639
    2017:05:28-12:03:00 sophos exim-out[15639]: 2017-05-28 12:03:00 End queue run: pid=15639
    2017:05:28-12:04:00 sophos exim-out[15709]: 2017-05-28 12:04:00 Start queue run: pid=15709
    2017:05:28-12:04:00 sophos exim-out[15709]: 2017-05-28 12:04:00 End queue run: pid=15709
    2017:05:28-12:05:00 sophos exim-out[15786]: 2017-05-28 12:05:00 Start queue run: pid=15786
    2017:05:28-12:05:00 sophos exim-out[15786]: 2017-05-28 12:05:00 End queue run: pid=15786
    2017:05:28-12:06:00 sophos exim-out[16209]: 2017-05-28 12:06:00 Start queue run: pid=16209
    2017:05:28-12:06:00 sophos exim-out[16209]: 2017-05-28 12:06:00 End queue run: pid=16209
     
     
    Wo muß ich sonst noch was anpassen?
     
    Da stimmt was mit den Ports nicht,
     
    2017:05:28-12:24:51 sophos smtpd[4800]: MASTER[4800]: (Re-)loading configuration from Confd
    2017:05:28-12:24:51 sophos smtpd[4800]: MASTER[4800]: QR globally disabled, status one set to 'disabled'
    2017:05:28-12:24:51 sophos smtpd[4800]: MASTER[4800]: QR globally disabled, status two set to 'disabled'
    2017:05:28-12:24:51 sophos exim-in[4886]: 2017-05-28 12:24:51 pid 4886: SIGHUP received: re-exec daemon
    2017:05:28-12:24:51 sophos exim-in[4886]: 2017-05-28 12:24:51 exim 4.82_1-5b7a7c0-XX daemon started: pid=4886, no queue runs, listening for SMTP on port 25 (IPv4) port 587 (IPv4) and for SMTPS on port 465 (IPv4)
    2017:05:28-12:25:00 sophos exim-out[18380]: 2017-05-28 12:25:00 Start queue run: pid=18380
    2017:05:28-12:25:00 sophos exim-out[18380]: 2017-05-28 12:25:00 End queue run: pid=18380
     
Children
No Data