• Email relay through Vertrauen failing

    From Nightfox@1:103/705 to Digital Man on Sunday, January 07, 2024 16:12:10
    Hi DM,

    I've had my BBS set up to relay outgoing SMTP email through Vertrauen for a while, according to this wiki page:
    https://wiki.synchro.net/howto:relay_smtp

    Recently, all outgoing email from my system has been coming back with a 'failure to deliver' message. I don't know what has changed. For instance, I tried sending a test email to my Gmail account from my BBS and got this response back:

    TZ: fe20
    vert.synchro.net reporting delivery failure of message
    from Nightfox to eric.oulashin@gmail.com

    Reason:
    gmail-smtp-in.l.google.com replied with:
    "550 5.7.26 https://support.google.com/mail/answer/81126#authentication x188-20020a6263c5000000b006d98bbbd3cbsi11324918pfb.295 - gsmtp"
    instead of the expected reply:
    "250 ..."

    Original message text follows:

    This is a test

    Nightfox

    ---
    þ Synchronet þ Digital Distortion: digitaldistortionbbs.com
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Digital Man@1:103/705 to Nightfox on Sunday, January 07, 2024 18:49:01
    Re: Email relay through Vertrauen failing
    By: Nightfox to Digital Man on Sun Jan 07 2024 04:12 pm

    Hi DM,

    I've had my BBS set up to relay outgoing SMTP email through Vertrauen for a while, according to this wiki page: https://wiki.synchro.net/howto:relay_smtp

    Recently, all outgoing email from my system has been coming back with a 'failure to deliver' message. I don't know what has changed. For instance, I tried sending a test email to my Gmail account from my BBS and got this response back:

    TZ: fe20
    vert.synchro.net reporting delivery failure of message
    from Nightfox to eric.oulashin@gmail.com

    Reason:
    gmail-smtp-in.l.google.com replied with:
    "550 5.7.26 https://support.google.com/mail/answer/81126#authentication x188-20020a6263c5000000b006d98bbbd3cbsi11324918pfb.295 - gsmtp"
    instead of the expected reply:
    "250 ..."

    Original message text follows:

    This is a test

    Maybe it was just a temporary failure? I just tried and successfully delivered an email to that address (from the same mail severs):

    2024-01-07T18:47:47.346724-08:00 git sbbs: mail 0000 SEND Message #380056 (90 of 90) from 'Rob Swindell' #1 to 'Eric Oulashin' <eric.oulashin@gmail.com>
    2024-01-07T18:47:48.834017-08:00 git sbbs: mail 0082 SEND/TLS Successfully sent message #380056 (59 bytes, 5 lines) from 'Rob Swindell' #1 to 'Eric Oulashin' <eric.oulashin@gmail.com>
    --
    digital man (rob)

    Rush quote #11:
    Struck between the eyes by the big time world, walking uneasy streets
    Norco, CA WX: 48.7øF, 30.0% humidity, 2 mph W wind, 0.03 inches rain/24hrs
    --- SBBSecho 3.20-Linux
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Nightfox@1:103/705 to Digital Man on Monday, January 08, 2024 09:29:01
    Re: Email relay through Vertrauen failing
    By: Digital Man to Nightfox on Sun Jan 07 2024 06:49 pm

    Maybe it was just a temporary failure? I just tried and successfully delivered an email to that address (from the same mail severs):

    Hopefully it's temporary. But for at least a month or so now, every email I've sent out from my BBS (routed through yours) has had a failure response.

    Nightfox

    ---
    þ Synchronet þ Digital Distortion: digitaldistortionbbs.com
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Digital Man@1:103/705 to Nightfox on Monday, January 08, 2024 11:58:46
    Re: Email relay through Vertrauen failing
    By: Nightfox to Digital Man on Mon Jan 08 2024 09:29 am

    Re: Email relay through Vertrauen failing
    By: Digital Man to Nightfox on Sun Jan 07 2024 06:49 pm

    Maybe it was just a temporary failure? I just tried and successfully delivered an email to that address (from the same mail severs):

    Hopefully it's temporary. But for at least a month or so now, every email I've sent out from my BBS (routed through yours) has had a failure response.

    Maybe something to do with the From address on the email. I'll have to experiment and see.
    --
    digital man (rob)

    Synchronet "Real Fact" #13:
    Synchronet was the first BBS software to ship with internal QWK networking Norco, CA WX: 55.7øF, 20.0% humidity, 8 mph NNW wind, 0.00 inches rain/24hrs --- SBBSecho 3.20-Linux
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Jason@1:103/705 to Nightfox on Tuesday, January 16, 2024 23:56:30
    Re: Email relay through Vertrauen failing
    By: Nightfox to Digital Man on Mon Jan 08 2024 09:29 am

    Gmail has recently started requiring a _dmarc dns record to be created to continue to accept emails. I've had to do that in several other non-bbs systems lately because they are cracking down on "spam". Not to suggest what you're sending is spam, but you should look into creating a _dmarc dns address that works for you, even if it's to do nothing.

    ---
    þ Synchronet þ Hard Drive Cafe - hdcbbs.com
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Nightfox@1:103/705 to Jason on Wednesday, January 17, 2024 09:12:07
    Re: Email relay through Vertrauen failing
    By: Jason to Nightfox on Tue Jan 16 2024 11:56 pm

    Gmail has recently started requiring a _dmarc dns record to be created to continue to accept emails. I've had to do that in several other non-bbs systems lately because they are cracking down on "spam". Not to suggest what you're sending is spam, but you should look into creating a _dmarc dns address that works for you, even if it's to do nothing.

    Since I'm relaying my outgoing email through Vertrauen, I'm not sure if it would be me or Vertrauen that needs thta DNS record.

    Nightfox

    ---
    þ Synchronet þ Digital Distortion: digitaldistortionbbs.com
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Digital Man@1:103/705 to Nightfox on Wednesday, January 17, 2024 12:28:42
    Re: Email relay through Vertrauen failing
    By: Nightfox to Jason on Wed Jan 17 2024 09:12 am

    Re: Email relay through Vertrauen failing
    By: Jason to Nightfox on Tue Jan 16 2024 11:56 pm

    Gmail has recently started requiring a _dmarc dns record to be created to continue to accept emails. I've had to do that in several other non-bbs systems lately because they are cracking down on "spam". Not to suggest what you're sending is spam, but you should look into creating a _dmarc dns address that works for you, even if it's to do nothing.

    Since I'm relaying my outgoing email through Vertrauen, I'm not sure if it would be me or Vertrauen that needs thta DNS record.

    It might just be an SPF record that you need (for *your* domain). Vertruaen already has an SPF record for the synchro.net domain and I can send to gmail addresses (from synchro.net domains) just fine.
    --
    digital man (rob)

    Synchronet/BBS Terminology Definition #38:
    GIF = Graphics Interchange Format (pronounced "JIFF")
    Norco, CA WX: 56.2øF, 80.0% humidity, 2 mph WSW wind, 0.00 inches rain/24hrs --- SBBSecho 3.20-Linux
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Keyop@1:103/705 to Nightfox on Wednesday, January 17, 2024 22:40:03
    Re: Email relay through Vertrauen failing
    By: Nightfox to Jason on Wed Jan 17 2024 09:12:07

    Re: Email relay through Vertrauen failing
    By: Jason to Nightfox on Tue Jan 16 2024 11:56 pm

    Gmail has recently started requiring a _dmarc dns record to be created to continue to accept emails. I've had to do that in several other non-bbs systems lately because they are cracking down on "spam".
    Not to suggest what you're sending is spam, but you should look into creating a _dmarc dns address that works for you, even if it's to do nothing.

    Since I'm relaying my outgoing email through Vertrauen, I'm not sure if it would be me or Vertrauen that needs thta DNS record.

    Nightfox

    It's the DNS record that needs updating to support a _DMARC entry for your own domain, nothing to do with the outbound MTA(s). Here is my _DMARC entry on my cloudflare DNS.

    "TXT", "_dmarc.bbs.magnum.uk.net", "v=DMARC1; p=reject"

    A good website to use to check your DMARC config is:

    https://mxtoolbox.com/

    Which has some DMARC testing functions.

    Many receiving email services will also throw your BBS's email into the SPAM folder or just outright drop it, if DKIM is also not used.

    DKIM however requires the last outbound MTA sign the email with your DKIM private key which needs to match a DKIM public key within your DNS configuration.

    I use a postfix MTA to act as an inbound / outbouund relay for my BBS emails, which takes care anti malware, anti spam, SPF (inbound), DMARC (inbound) and DKIM (inbound / outbound) processing.

    Feel free to reach out to me if you'd like any help setting up an MTA relay.

    ---
    þ Synchronet þ >>> Magnum BBS <<< - bbs.magnum.uk.net
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From nelgin@1:103/705 to All on Friday, January 19, 2024 03:10:18
    On Wed, 17 Jan 2024 22:40:03 +0000
    "Keyop" (VERT/MAGNUMUK) <VERT/MAGNUMUK!Keyop@endofthelinebbs.com> wrote:
    Re: Email relay through Vertrauen failing
    By: Nightfox to Jason on Wed Jan 17 2024 09:12:07

    Re: Email relay through Vertrauen failing
    By: Jason to Nightfox on Tue Jan 16 2024 11:56 pm

    Gmail has recently started requiring a _dmarc dns record to
    be created to continue to accept emails. I've had to do that
    in several other non-bbs systems lately because they are
    cracking down on "spam". Not to suggest what you're sending
    is spam, but you should look into creating a _dmarc dns
    address that works for you, even if it's to do nothing.

    Since I'm relaying my outgoing email through Vertrauen, I'm not
    sure if it would be me or Vertrauen that needs thta DNS record.

    Nightfox

    It's the DNS record that needs updating to support a _DMARC entry for
    your own domain, nothing to do with the outbound MTA(s). Here is my
    _DMARC entry on my cloudflare DNS.

    "TXT", "_dmarc.bbs.magnum.uk.net", "v=DMARC1; p=reject"

    A good website to use to check your DMARC config is:

    https://mxtoolbox.com/

    Which has some DMARC testing functions.

    Many receiving email services will also throw your BBS's email into
    the SPAM folder or just outright drop it, if DKIM is also not used.

    DKIM however requires the last outbound MTA sign the email with your
    DKIM private key which needs to match a DKIM public key within your
    DNS configuration.

    I use a postfix MTA to act as an inbound / outbouund relay for my BBS
    emails, which takes care anti malware, anti spam, SPF (inbound),
    DMARC (inbound) and DKIM (inbound / outbound) processing.

    Feel free to reach out to me if you'd like any help setting up an MTA
    relay.

    ---
    â–  Synchronet â–  >>> Magnum BBS <<< - bbs.magnum.uk.net
    If I remember correctly, the DMARC must be added at the last MTA relay
    before it is sent out. Or maybe I'm thinking SPF or something else, but
    I know that one of them has to be added by your mail relay and not you.
    --
    End Of The Line BBS - Plano, TX
    telnet endofthelinebbs.com 23
    ---
    ï¿­ Synchronet ï¿­ End Of The Line BBS - endofthelinebbs.com
    --- SBBSecho 3.20-Linux
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Keyop@1:103/705 to nelgin on Friday, January 19, 2024 21:24:04
    Re: Re: Email relay through Vertrauen failing
    By: nelgin to All on Fri Jan 19 2024 03:10:18

    If I remember correctly, the DMARC must be added at the last MTA relay before it is sent out. Or maybe I'm thinking SPF or something else, but
    I know that one of them has to be added by your mail relay and not you.

    Thats DKIM - signed by the last outbound MTA.

    ---
    þ Synchronet þ >>> Magnum BBS <<< - bbs.magnum.uk.net
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)
  • From Jason@1:103/705 to Nightfox on Monday, February 05, 2024 20:41:44
    Re: Email relay through Vertrauen failing
    By: Nightfox to Jason on Wed Jan 17 2024 09:12 am

    Gmail has recently started requiring a _dmarc dns record to be created to continue to accept emails. I've had to do that in several other non-bbs
    systems lately because they are cracking down on "spam". Not to suggest what you're sending is spam, but you should look into creating a _dmarc dns
    address that works for you, even if it's to do nothing.

    Since I'm relaying my outgoing email through Vertrauen, I'm not sure if it would be me or Vertrauen that needs thta DNS record.

    Nightfox

    I guess it depends on the domain name you're using to send email.

    ---
    þ Synchronet þ Hard Drive Cafe - hdcbbs.com
    * Origin: Vertrauen - [vert/cvs/bbs].synchro.net (1:103/705)