This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Relay email for clients

I have my Sophos UTM running at my home office. It is handeling my email at the moment, this is working fine.

No i would also like to handeling the emails from my clients before the emails reach their Exchange servers.

So i changed their MX records to my IP address.

I have created SMTP Profiles per client.

Under "Routing" i chose "DNS hostname" under Route by. I entered remote.CLIENTNAME.nl here.

I have checked the email with the Exchange Connectivity site, but i am getting error:

 
The server returned status code 550 - Mailbox unavailable. The server response was: Relay not permitted
Exception details:
Message: Mailbox unavailable. The server response was: Relay not permitted
Type: System.Net.Mail.SmtpFailedRecipientException

 

So i assume i have to enter the clients IP under "Relaying". i am right?

But which one? Upstream/Authenticated or Host-Based Relay?



This thread was automatically locked due to age.
Parents Reply Children
  • Yes all my static IP's are in the SPF record.

  • Be patient. Wait 2 hours for dns to be updated

  • IP's have been in SPF for weeks

    What i meant was, Sophos cannot make it worse. The problem was already there before i start using Sophos. I have tried everything, sending through MX, smarthost ISP, Sendgrid Smarthost, SpamExperts Smarthost. I even bought different IP addresses and then use a GRE tunnel.

    After a few emails Microsoft SmartScreen Filter flags the emails as SPAM.

    Always with:

    X-MS-Exchange-Organization-SCL: 5
    X-MS-Exchange-Organization-PCL: 2

    I have emailed MS at https://support.microsoft...&ccsid=636338228758026326

    Then i get a standard answer that the SmartScreen Filter is blocking my emails and they don't know why.

    I am not blacklisted, it is the darn SmartScreen Filter and no one seems to be able to tell me how to fix this (except using Office365, i like having my one server). I have also tried SPF/DMARC/DKIM/rDNS/TTL 3600, i have followed all the "rules" for AFAIK.

  • I agree, Nick, the UTM's SMTP Proxy can't make it any worse.  It would be interesting to see if having it spam-check outbound emails turns up any false positives.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA