Hi there friends and colleagues,

Maybe someone here can help. We have a lot of genius mailadmin know-how here šŸ˜Š

On one of our mailservers we use postfix with dnsblog on localhost:53 to 
resolve connecting IP addresses against RBLs etc.

However from time to time we get a large bunch of blackouts. It works 90% of 
the time but now and then its spamming the maillog with timeouts or ā€œunable to 
resolveā€ messages. I am a bit clueless. Local nameresolution works flawlessly.

The /etc/resolv.conf looks like this:

nameserver 127.0.0.53
options edns0 trust-ad

netstat -tulpn |grep 53
tcp        0      0 127.0.0.53:53           0.0.0.0:*               LISTEN      
586/systemd-resolve
udp        0      0 127.0.0.53:53           0.0.0.0:*                           
586/systemd-resolve

Errors in /var/log/mail.log

Dec  3 11:59:21 mta01 postfix/postscreen[194346]: CONNECT from 
[196.189.63.96]:62377 to [217.172.165.13]:25
Dec  3 11:59:21 mta01 postfix/dnsblog[194354]: addr 196.189.63.96 listed by 
domain spam.dnsbl.anonmails.de as 127.0.0.2
Dec  3 11:59:21 mta01 postfix/dnsblog[194355]: addr 196.189.63.96 listed by 
domain dnsbl-2.uceprotect.net as 127.0.0.2
Dec  3 11:59:21 mta01 postfix/dnsblog[194364]: addr 196.189.63.96 listed by 
domain dnsbl-1.uceprotect.net as 127.0.0.2
Dec  3 11:59:21 mta01 postfix/dnsblog[194380]: addr 196.189.63.96 listed by 
domain zen.spamhaus.org as 127.255.255.254
Dec  3 11:59:21 mta01 postfix/dnsblog[194382]: addr 196.189.63.96 listed by 
domain cbl.abuseat.org as 127.0.0.2
Dec  3 11:59:21 mta01 postfix/dnsblog[194360]: addr 196.189.63.96 listed by 
domain truncate.gbudb.net as 127.0.0.2
Dec  3 11:59:21 mta01 postfix/dnsblog[194363]: addr 196.189.63.96 listed by 
domain hostkarma.junkemailfilter.com as 127.0.1.2
Dec  3 11:59:21 mta01 postfix/dnsblog[194363]: addr 196.189.63.96 listed by 
domain hostkarma.junkemailfilter.com as 127.0.0.2
Dec  3 11:59:22 mta01 postfix/dnsblog[194381]: addr 196.189.63.96 listed by 
domain all.s5h.net as 127.0.0.2
Dec  3 11:59:22 mta01 postfix/dnsblog[194350]: addr 196.189.63.96 listed by 
domain dnsbl.spfbl.net as 127.0.0.4
Dec  3 11:59:22 mta01 postfix/dnsblog[194354]: addr 196.189.63.96 listed by 
domain ix.dnsbl.manitu.net as 127.0.0.2
Dec  3 11:59:22 mta01 postfix/dnsblog[194384]: addr 196.189.63.96 listed by 
domain sbl-xbl.spamhaus.org as 127.255.255.254
Dec  3 11:59:22 mta01 postfix/dnsblog[194356]: addr 196.189.63.96 listed by 
domain b.barracudacentral.org as 127.0.0.2
Dec  3 11:59:25 mta01 postfix/dnsblog[194365]: addr 196.189.63.96 listed by 
domain db.wpbl.info as 127.0.0.2
Dec  3 11:59:26 mta01 postfix/dnsblog[194371]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.list.dnswl.org: Host or domain name not 
found. Name service error for name=96.63.189.196.list.dnswl.org type=A: Host 
not found, try again
Dec  3 11:59:27 mta01 postfix/postscreen[194346]: DNSBL rank 34 for 
[196.189.63.96]:62377
Dec  3 11:59:27 mta01 postfix/postscreen[194346]: NOQUEUE: reject: RCPT from 
[196.189.63.96]:62377: 550 5.7.1 Service unavailable; client [196.189.63.96] 
blocked using b.barracudacentral.org; from=<x...@xxx.xx>, to=<y...@yyy.yy>, 
proto=ESMTP, helo=<[196.189.63.96]>
Dec  3 11:59:27 mta01 postfix/postscreen[194346]: HANGUP after 0.69 from 
[196.189.63.96]:62377 in tests after SMTP handshake
Dec  3 11:59:27 mta01 postfix/postscreen[194346]: DISCONNECT 
[196.189.63.96]:62377
Dec  3 11:59:31 mta01 postfix/dnsblog[194348]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.access.redhawk.org: Host or domain name not 
found. Name service error for name=96.63.189.196.access.redhawk.org type=A: 
Host not found, try again
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for access.redhawk.org
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for dnsbl.zapbl.net
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for spam.spamrats.com
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for aspews.ext.sorbs.net
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for dul.abusecheck.org
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for bl.spamcop.net
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for bl.fmb.la
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for bl.suomispam.net
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for noptr.spamrats.com
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for multi.surbl.org
Dec  3 11:59:31 mta01 postfix/postscreen[194346]: warning: dnsblog reply 
timeout 10s for black.junkemailfilter.com
Dec  3 11:59:31 mta01 postfix/dnsblog[194352]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.dnsbl.zapbl.net: Host or domain name not 
found. Name service error for name=96.63.189.196.dnsbl.zapbl.net type=A: Host 
not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194359]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.spam.spamrats.com: Host or domain name not 
found. Name service error for name=96.63.189.196.spam.spamrats.com type=A: Host 
not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194367]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.aspews.ext.sorbs.net: Host or domain name not 
found. Name service error for name=96.63.189.196.aspews.ext.sorbs.net type=A: 
Host not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194370]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.dul.abusecheck.org: Host or domain name not 
found. Name service error for name=96.63.189.196.dul.abusecheck.org type=A: 
Host not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194374]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.bl.spamcop.net: Host or domain name not 
found. Name service error for name=96.63.189.196.bl.spamcop.net type=A: Host 
not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194378]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.bl.fmb.la: Host or domain name not found. 
Name service error for name=96.63.189.196.bl.fmb.la type=A: Host not found, try 
again
Dec  3 11:59:31 mta01 postfix/dnsblog[194372]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.bl.suomispam.net: Host or domain name not 
found. Name service error for name=96.63.189.196.bl.suomispam.net type=A: Host 
not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194369]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.noptr.spamrats.com: Host or domain name not 
found. Name service error for name=96.63.189.196.noptr.spamrats.com type=A: 
Host not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194383]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.black.junkemailfilter.com: Host or domain 
name not found. Name service error for 
name=96.63.189.196.black.junkemailfilter.com type=A: Host not found, try again
Dec  3 11:59:31 mta01 postfix/dnsblog[194347]: warning: dnsblog_query: lookup 
error for DNS query 96.63.189.196.multi.surbl.org: Host or domain name not 
found. Name service error for name=96.63.189.196.multi.surbl.org type=A: Host 
not found, try again



When I try to lookup for example:

nslookup 96.63.189.196.spam.spamrats.com
Server:         127.0.0.53
Address:        127.0.0.53#53

Non-authoritative answer:
Name:   96.63.189.196.spam.spamrats.com
Address: 127.0.0.38


It also seems to work ā€“ however the dnsblog_query above compains that it cannot 
resolve that.

I am a bit out of ideas.

KR
Daniel
_______________________________________________
mailop mailing list
mailop@mailop.org
https://list.mailop.org/listinfo/mailop

Reply via email to