I need the PMG to be between the external mail server and the outlook users

Jul 27, 2022
7
0
1
I have everything configured according to the manual, but even though it shows me some type of traffic capture, I need to know what I am missing so that the gateway operates between the mail server and the Outlook users, and I also want the PMG to send emails when the users send them I filtered them and all incoming mail

I send all my configuration screens and a graph of what you want to achieve

What should we do? I already set up an mx pointing the PMG.
 

Attachments

  • Captura de Pantalla 2022-08-15 a la(s) 1.55.28 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.55.28 p. m..png
    53.6 KB · Views: 28
  • PMG.png
    PMG.png
    218.8 KB · Views: 31
  • Captura de Pantalla 2022-08-15 a la(s) 2.16.28 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 2.16.28 p. m..png
    115.5 KB · Views: 26
  • Captura de Pantalla 2022-08-15 a la(s) 1.57.10 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.57.10 p. m..png
    107.2 KB · Views: 23
  • Captura de Pantalla 2022-08-15 a la(s) 1.56.55 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.56.55 p. m..png
    241.5 KB · Views: 21
  • Captura de Pantalla 2022-08-15 a la(s) 1.56.43 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.56.43 p. m..png
    425.7 KB · Views: 18
  • Captura de Pantalla 2022-08-15 a la(s) 1.55.52 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.55.52 p. m..png
    61.1 KB · Views: 19
  • Captura de Pantalla 2022-08-15 a la(s) 1.55.45 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.55.45 p. m..png
    197.8 KB · Views: 19
  • Captura de Pantalla 2022-08-15 a la(s) 1.55.38 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.55.38 p. m..png
    57.5 KB · Views: 15
  • Captura de Pantalla 2022-08-15 a la(s) 1.55.34 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.55.34 p. m..png
    50.1 KB · Views: 24
Not sure waht you really want to acheive - form the last screenshot you have "outlook users for mail.domino.com" and "mailserver for mail.domino.com" - one domain needs to have one server (or a cluster...) where mail is handled

what's the difference between "outlook users for mail.domino.com" and "mailserver for mail.domino.com" ?

else - in general this is explained in the reference documentation:
https://pmg.proxmox.com/pmg-docs/pmg-admin-guide.html#chapter_deployment

I hope this helps!
 
Currently with an MX record the PMG server shows me some road signs to the PMG. But we want all traffic from the mail server to go through the PMG to be filtered and outgoing mail to be filtered as well. I followed all the configuration manual but I'm not sure how the PMG is capturing the information

I created two test accounts in the flecthmail to verify the traffic of those accounts but what I want to understand is if only placing the PMG in an MX record filters and how the clients would communicate with the Mail Server if it is replaced with the PMG, how the email accounts would be validated if the mail.domain.com would be placed pointing the 2 servers the Mail Server and the PMG

So that it filters everything at the domain level.

And how is it configured so that all mail goes through the PMG


I already followed the documentation but I'm not sure if it's configured correctly.

As I say, my scenario is that my Mail server is external to hostgator and I want the PMG to be in the middle between my mail server and the users in Outlook.
 

Attachments

  • PMG.png
    PMG.png
    218.8 KB · Views: 8
as said - usually mail ends up at one destination - where do your users read their mail?
* at hostgator 192.185.95.00?!
* at "outlook" (which I assume means some exchange or o365 setup) ?

else if you want some host to relay mail through pmg to the internet you need to:
* configure that host to relay mail to your PMG on the internal port
* add it's ip to the networks in GUI->Configuration->Mail Proxy->Networks
 
Thank you for your answers

Effectively we have our mail server in an external host at the address (192.185.95.xx) , which is the address of mail.mydomain.com which is our MX record in the DNS mydomain.com.

Outlook users place mail.mydomain.com on their incoming server and validate against that server with their email and password on port 995 or 993 and with SSL active

I created an MX record in my DNS that points to the PMG but I did it as an additional record

What I want is for all incoming and outgoing traffic to be filtered by the PMG.

It is what I want to understand because it is showing me some traffic values but no filtering statistics or rules applied to the traffic.
 

Attachments

  • Captura de Pantalla 2022-08-15 a la(s) 1.56.43 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 1.56.43 p. m..png
    425.7 KB · Views: 4
  • Captura de Pantalla 2022-08-15 a la(s) 2.16.28 p. m..png
    Captura de Pantalla 2022-08-15 a la(s) 2.16.28 p. m..png
    115.5 KB · Views: 4
I created an MX record in my DNS that points to the PMG but I did it as an additional record
depending on how you added it (with which priority) now half of your mail will go through pmg, half directly to the mailserver
see: https://en.wikipedia.org/wiki/MX_record

What I want is for all incoming and outgoing traffic to be filtered by the PMG.
* set only PMG to be the MX for your domain - and let PMG send the mails to your mail-server
* configure your mail-server to relay mails to the internet via PMG
* let your outlook-users fetch the mails from your mailserver and send them there as well
 
depending on how you added it (with which priority) now half of your mail will go through pmg, half directly to the mailserver
see: https://en.wikipedia.org/wiki/MX_record


* set only PMG to be the MX for your domain - and let PMG send the mails to your mail-server
* configure your mail-server to relay mails to the internet via PMG
* let your outlook-users fetch the mails from your mailserver and send them there as well
I followed the steps and managed to capture all the input traffic with the mx records but after I do it it is not delivering the emails to the users, it stops them and shows me the messages that I attach in the image in the query...where is my fault?
 

Attachments

  • Captura de Pantalla 2022-09-15 a la(s) 9.56.23 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.56.23 p. m..png
    152.3 KB · Views: 7
  • Captura de Pantalla 2022-09-15 a la(s) 9.56.16 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.56.16 p. m..png
    432.5 KB · Views: 7
  • Captura de Pantalla 2022-09-15 a la(s) 9.55.14 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.55.14 p. m..png
    223.3 KB · Views: 5
  • Captura de Pantalla 2022-09-15 a la(s) 9.55.02 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.55.02 p. m..png
    126.5 KB · Views: 6
  • Captura de Pantalla 2022-09-15 a la(s) 9.52.56 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.52.56 p. m..png
    133.8 KB · Views: 6
I followed the steps and managed to capture all the input traffic with the mx records but after I do it it is not delivering the emails to the users, it stops them and shows me the messages that I attach in the image in the query...where is my fault?
My settings
 

Attachments

  • Captura de Pantalla 2022-09-15 a la(s) 9.57.36 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.57.36 p. m..png
    64.1 KB · Views: 7
  • Captura de Pantalla 2022-09-15 a la(s) 9.57.41 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.57.41 p. m..png
    47.7 KB · Views: 6
  • Captura de Pantalla 2022-09-15 a la(s) 9.57.46 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.57.46 p. m..png
    51.1 KB · Views: 5
  • Captura de Pantalla 2022-09-15 a la(s) 9.57.58 p. m..png
    Captura de Pantalla 2022-09-15 a la(s) 9.57.58 p. m..png
    63.2 KB · Views: 6
I followed the steps and managed to capture all the input traffic with the mx records but after I do it it is not delivering the emails to the users, it stops them and shows me the messages that I attach in the image in the query...where is my fault?
the part with host not found (for the mx record of gmail) points to a problem with your DNS Setup - check that the DNS-resolver you have configured in /etc/resolv.conf is indeed working

else as I saw that you've configured port 587 for your default relay , and as your external port - this will in general not work (unless you have some firewall and porttranslation rules in place):
* the external port is where PMG receives mail from the internet - this ususally happens via port 25 - so if e.g. gmail wants to send a mail to your domain it will look up the mx record for the domain, and resolve this to an ip and then connect to port 25 of that ip
* as for the default relay: port 587 is most commonly used for mail submission from mail clients - and in most situation requires SMTPAUTH - however PMG does not have SMTPAUTH configurable for it's downstream servers (unless you tweak the config)

Please recheck your setup - the reference documentation should help you https://pmg.proxmox.com/pmg-docs/pmg-admin-guide.html
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!