Hello,
I have configured our PMG instance to relay emails for domainA.com and forward those emails to our O365 accounts under domainB.com, I used the templating system in order to define mapping between user@domainA.com to user@domainB.com (virtual_alias_maps).
This is working as expected and th "to" address is being rewritten to domainB.com and sent on the the right MX serververs for domainB.com.
However there is one thing in the logs that I don't understand is that for each of those transactions I see a double-bounce@pmg.domainA.com being generated for user@domainB.com and as far as I can tell this is never delivered to user@domainB.com.
At this point I loose visibility as the O365 domain uses an external service to filter emails before they reach these mailboxes and I do not manage either of these services.
The syslog for such transaction is as follow:
I see the NOQUEUE for the double-bounce email but I don't understand why it is generated in the first place.
Thanks in advance for your help.
Regards,
Vincent
I have configured our PMG instance to relay emails for domainA.com and forward those emails to our O365 accounts under domainB.com, I used the templating system in order to define mapping between user@domainA.com to user@domainB.com (virtual_alias_maps).
This is working as expected and th "to" address is being rewritten to domainB.com and sent on the the right MX serververs for domainB.com.
However there is one thing in the logs that I don't understand is that for each of those transactions I see a double-bounce@pmg.domainA.com being generated for user@domainB.com and as far as I can tell this is never delivered to user@domainB.com.
At this point I loose visibility as the O365 domain uses an external service to filter emails before they reach these mailboxes and I do not manage either of these services.
The syslog for such transaction is as follow:
Code:
2025-07-28T13:54:41.575524+02:00 smtp postfix/postscreen[398821]: CONNECT from [1.2.3.4]:57706 to [10.10.10.10]:25
2025-07-28T13:54:47.576635+02:00 smtp postfix/postscreen[398821]: PASS OLD [1.2.3.4]:57706
2025-07-28T13:54:47.706490+02:00 smtp postfix/smtpd[398822]: connect from mail.source.com[1.2.3.4]
2025-07-28T13:54:47.733442+02:00 smtp pmg-smtp-filter[388522]: starting database maintenance
2025-07-28T13:54:47.745315+02:00 smtp pmg-smtp-filter[388522]: end database maintenance (11 ms)
2025-07-28T13:54:47.805437+02:00 smtp pmgpolicy[397871]: reloading configuration Proxmox_ruledb
2025-07-28T13:54:48.041044+02:00 smtp pmgpolicy[397871]: SPF says pass
2025-07-28T13:54:48.064439+02:00 smtp postfix/cleanup[398829]: 0F6BC40392: message-id=<20250728115448.0F6BC40392@smtp.domainA.com>
2025-07-28T13:54:48.066906+02:00 smtp postfix/qmgr[265425]: 0F6BC40392: from=<double-bounce@smtp.domainA.com>, size=272, nrcpt=1 (queue active)
2025-07-28T13:54:50.407956+02:00 smtp postfix/smtp[398830]: 0F6BC40392: to=<user@domainB.com>, orig_to=<user@domainA.com>, relay=mx-filter.com[5.6.7.8]:25, delay=2.3, delays=0/0.01/2.1/0.21, dsn=2.1.5, status=deliverable (250 2.1.5 Recipient ok)
2025-07-28T13:54:50.408688+02:00 smtp postfix/qmgr[265425]: 0F6BC40392: removed
2025-07-28T13:54:51.059658+02:00 smtp postfix/smtpd[398822]: NOQUEUE: client=mail.source.com[1.2.3.4]
2025-07-28T13:54:51.084370+02:00 smtp pmg-smtp-filter[388527]: 2025/07/28-13:54:51 CONNECT TCP Peer: "[127.0.0.1]:34770" Local: "[127.0.0.1]:10024"
2025-07-28T13:54:51.139249+02:00 smtp pmg-smtp-filter[388527]: 42C5A6887650B1F4D4: new mail message-id=<99c0ec5c47ccded878d5031b2c39f492@source.com>#012
2025-07-28T13:54:56.588974+02:00 smtp pmg-smtp-filter[388527]: WARNING: check: dns_block_rule RCVD_IN_DNSWL_BLOCKED hit, creating /root/.spamassassin/dnsblock_list.dnswl.org (This means DNSBL blocked you due to too many queries. Set all affected rules score to 0, or use "dns_query_restriction deny list.dnswl.org" to disable queries)
2025-07-28T13:54:56.591221+02:00 smtp pmg-smtp-filter[388527]: WARNING: check: dns_block_rule RCVD_IN_VALIDITY_CERTIFIED_BLOCKED hit, creating /root/.spamassassin/dnsblock_sa-trusted.bondedsender.org (This means DNSBL blocked you due to too many queries. Set all affected rules score to 0, or use "dns_query_restriction deny sa-trusted.bonded
sender.org" to disable queries)
2025-07-28T13:54:56.591341+02:00 smtp pmg-smtp-filter[388527]: WARNING: check: dns_block_rule RCVD_IN_VALIDITY_RPBL_BLOCKED hit, creating /root/.spamassassin/dnsblock_bl.score.senderscore.com (This means DNSBL blocked you due to too many queries. Set all affected rules score to 0, or use "dns_query_restriction deny bl.score.senderscore.com"
to disable queries)
2025-07-28T13:54:56.591423+02:00 smtp pmg-smtp-filter[388527]: WARNING: check: dns_block_rule RCVD_IN_VALIDITY_SAFE_BLOCKED hit, creating /root/.spamassassin/dnsblock_sa-accredit.habeas.com (This means DNSBL blocked you due to too many queries. Set all affected rules score to 0, or use "dns_query_restriction deny sa-accredit.habeas.com" to
disable queries)
2025-07-28T13:54:56.591509+02:00 smtp pmg-smtp-filter[388527]: WARNING: check: dns_block_rule RCVD_IN_ZEN_BLOCKED_OPENDNS hit, creating /root/.spamassassin/dnsblock_zen.spamhaus.org (This means DNSBL blocked you due to too many queries. Set all affected rules score to 0, or use "dns_query_restriction deny zen.spamhaus.org" to disable querie
s)
2025-07-28T13:54:56.600416+02:00 smtp pmg-smtp-filter[388527]: 42C5A6887650B1F4D4: SA score=0/5 time=5.328 bayes=undefined autolearn=disabled hits=DKIM_SIGNED(0.1),DKIM_VALID(-0.1),DKIM_VALID_AU(-0.1),DKIM_VALID_EF(-0.1),DMARC_PASS(-0.1),KAM_INFOUSMEBIZ(0.75),RCVD_IN_DNSWL_BLOCKED(0.001),RCVD_IN_VALIDITY_CERTIFIED_BLOCKED(0.001),RCVD_IN_VAL
IDITY_RPBL_BLOCKED(0.001),RCVD_IN_VALIDITY_SAFE_BLOCKED(0.001),RCVD_IN_ZEN_BLOCKED_OPENDNS(0.001),SPF_HELO_NONE(0.001),SPF_PASS(-0.001),URIBL_DBL_BLOCKED_OPENDNS(0.001)
2025-07-28T13:54:56.620782+02:00 smtp postfix/smtpd[398843]: connect from localhost.localdomain[127.0.0.1]
2025-07-28T13:54:56.625321+02:00 smtp postfix/smtpd[398843]: 9821E42C5E: client=localhost.localdomain[127.0.0.1], orig_client=mail.source.com[1.2.3.4]
2025-07-28T13:54:56.667292+02:00 smtp postfix/cleanup[398829]: 9821E42C5E: message-id=<99c0ec5c47ccded878d5031b2c39f492@source.com>
2025-07-28T13:54:56.673048+02:00 smtp postfix/qmgr[265425]: 9821E42C5E: from=<user@source.com>, size=3558, nrcpt=1 (queue active)
2025-07-28T13:54:56.675340+02:00 smtp pmg-smtp-filter[388527]: 42C5A6887650B1F4D4: accept mail to <user@domainA.com> (9821E42C5E) (rule: default-accept)
2025-07-28T13:54:56.675445+02:00 smtp postfix/smtpd[398843]: disconnect from localhost.localdomain[127.0.0.1] ehlo=1 xforward=1 mail=1 rcpt=1 data=1 commands=5
2025-07-28T13:54:56.678428+02:00 smtp pmg-smtp-filter[388527]: 42C5A6887650B1F4D4: processing time: 5.545 seconds (5.328, 0.128, 0)
2025-07-28T13:54:56.679862+02:00 smtp postfix/smtpd[398822]: proxy-accept: END-OF-MESSAGE: 250 2.5.0 OK (42C5A6887650B1F4D4); from=<user@source.com> to=<user@domainA.com> proto=ESMTP helo=<mail.source.com>
2025-07-28T13:54:56.680376+02:00 smtp postfix/smtpd[398822]: disconnect from mail.source.com[1.2.3.4] ehlo=1 mail=1 rcpt=1 data=1 quit=1 commands=5
2025-07-28T13:54:58.432482+02:00 smtp postfix/smtp[398830]: 9821E42C5E: to=<user@domainA.com>, orig_to=<user@domainB.com>, relay=mx-filter.com[5.6.7.8]:25, delay=1.8, delays=0.05/0/0.52/1.2, dsn=2.0.0, status=sent (250 2.0.0 485jsagtcg-1 Message accepted for delivery)
2025-07-28T13:54:58.433170+02:00 smtp postfix/qmgr[265425]: 9821E42C5E: removed
I see the NOQUEUE for the double-bounce email but I don't understand why it is generated in the first place.
Thanks in advance for your help.
Regards,
Vincent