[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[cobalt-users] Sendmail & LogCheck Reports... Help?



Hi all! I need some help understanding some entries in my Logcheck reports.
Typically the bulk of my errors are rejected relays and Logcheck shows me
the following entry as it should.

Jan 14 11:03:33 www sendmail[2576]: g0EJ3Wf02576: ruleset=check_mail,
arg1=<makingit@xxxxxxxxx>, relay=[61.179.116.228], reject=451 4.1.8
<makingit@xxxxxxxxx>... Domain of sender address makingit@xxxxxxxxx does not
resolve

However, I have been getting more and more of the following entries in my
LogCheck report in the last day or two. I used to see these occasionally but
not like I am now. Todays logcheck report has 20-30 entries, strangely the
entries are repeating the same to: email addresses. An example excerpt from
my logs is listed below.

Jan 14 11:13:27 www sendmail[3003]: g0EJDQT03001: to=Peggy.Jones@xxxxxxxx,
ctladdr=admin (110/27), delay=00:00:01, xdelay=00:00:01, mailer=esmtp,
pri=31771, relay=smtp-ny01.weil.com. [38.228.47.4], dsn=2.0.0, stat=Sent
(Ok - Data received)
Jan 14 11:13:27 www sendmail[3000]: g0EJDQx02998: to=tom@xxxxxxxxxxxxxx,
ctladdr=admin (110/27), delay=00:00:01, xdelay=00:00:01, mailer=esmtp,
pri=31769, relay=m.dnsix.com. [216.34.13.242], dsn=2.0.0, stat=Sent (Ok:
queued as DD95714FF0C)
Jan 14 11:13:31 www sendmail[2994]: g0EJDOq02992: to=stjnt@xxxxxxxxxxxxx,
ctladdr=admin (110/27), delay=00:00:07, xdelay=00:00:05, mailer=esmtp,
pri=31770, relay=vma-ext.prodigy.net. [207.115.63.86], dsn=2.0.0, stat=Sent
(g0EJdOm220640 Message accepted for delivery)
Jan 14 11:13:40 www sendmail[2991]: g0EJDOB02989: to=vikkijj@xxxxxxx,
ctladdr=admin (110/27), delay=00:00:16, xdelay=00:00:16, mailer=esmtp,
pri=31766, relay=mailin-01.mx.aol.com. [152.163.224.26], dsn=2.0.0,
stat=Sent (OK)

More continued log entries... more repeated addresses.
Jan 14 11:44:30 www sendmail[4151]: g0EJdov04149: to=vikkijj@xxxxxxx,
ctladdr=admin (110/27), delay=00:04:40, xdelay=00:04:39, mailer=esmtp,
pri=32077, relay=mailin-03.mx.aol.com. [64.12.136.249], dsn=2.0.0, stat=Sent
(OK)
Jan 14 11:45:15 www sendmail[4200]: g0EJeWa04198: to=Peggy.Jones@xxxxxxxx,
ctladdr=admin (110/27), delay=00:04:43, xdelay=00:04:43, mailer=esmtp,
pri=32082, relay=smtp-ny01.weil.com. [38.228.47.4], dsn=2.0.0, stat=Sent
(Ok - Data received)
Jan 14 11:48:43 www sendmail[4192]: g0EJdpG04155: to=tom@xxxxxxxxxxxxxx,
ctladdr=admin (110/27), delay=00:08:52, xdelay=00:08:22, mailer=esmtp,
pri=32080, relay=m.dnsix.com. [216.34.13.242], dsn=2.0.0, stat=Sent (Ok:
queued as 2D39EA91B9)

This goes on for awhile. Not sure what this is indicating. Any help would be
useful. Pretty sure I am not being used as a relay. I am running all current
patches, pop before relay, etc. Have checked the box for relay capability
and it tested as being secure.

Thanks in advance for any help!

Best regards,
Troy Arnold