Articles on this Page
- 03/11/11--04:02: _Undelivered Mail Re...
- 10/18/11--00:02: _Messagelabs question
- 10/28/11--09:06: _Messagelabs blocked...
- 11/03/11--06:04: _How to protect Emai...
- 11/22/11--14:08: _Install Symantec Cl...
- 01/09/12--06:17: _Analysing non deliv...
- 01/23/12--08:20: _Symantec Cloud and ...
- 05/10/12--13:18: _Inbound mail delaye...
- 11/21/12--05:14: _Symantec.Cloud Mess...
- 02/06/13--18:31: _traffic email secur...
- 03/07/13--00:16: _brightmail fake mail
- 03/13/13--22:34: _Network Login requi...
- 07/19/13--12:06: _553 mail rejection ???
- 07/25/13--02:41: _Outbound spam
- 07/30/13--11:11: _Submit False Positi...
- 09/22/13--16:19: _4 new ip's keep get...
- 10/02/13--08:17: _Delivery failed 20 ...
- 10/04/13--11:26: _Alerts should be se...
- 10/08/13--07:18: _Anyone else seeing ...
- 11/29/13--07:35: _IPs listados no Bri...
- 03/11/11--04:02: Undelivered Mail Returned to Sender
- 10/18/11--00:02: Messagelabs question
- 10/28/11--09:06: Messagelabs blocked sender still sending emails to us
- 11/03/11--06:04: How to protect Emails(from Bounce) if Exchange is down
- 11/22/11--14:08: Install Symantec Cloud AV over SEP v11.x
- 01/23/12--08:20: Symantec Cloud and backscatter
- 05/10/12--13:18: Inbound mail delayed from Exchange 2007 to Messagelabs servers
- 11/21/12--05:14: Symantec.Cloud MessageLabs SPAM Manager
- 02/06/13--18:31: traffic email security.cloud
- 03/07/13--00:16: brightmail fake mail
- 07/19/13--12:06: 553 mail rejection ???
- 07/25/13--02:41: Outbound spam
- 07/30/13--11:11: Submit False Positive for Symantec Brightmail Blacklist
- 09/22/13--16:19: 4 new ip's keep getting blocked despite no spam being sent
- 10/02/13--08:17: Delivery failed 20 attempts
- 10/04/13--11:26: Alerts should be sent via email as well as SMS
- 10/08/13--07:18: Anyone else seeing very slow response time on ClientNet ?
- 11/29/13--07:35: IPs listados no BrightMail
I would be very grateful if anyone could help me with the following problem I have been experiencing lately with my emails. I have been alerted by people I have been exchanging emails with lately that they are receiving numerous "Undelivered Mail Returned to Sender" suposedly coming from me, when sending me emails (even though I do receive their emails).
I use Windows Mail to manage my several email accounts. And the strangest thing is that the said "server which refused mail service" is not the server used nor the email address used in the email exchange!!! (the email address mentioned is my default email address on Windows Mail)
Also, the emails received from one particular person who is receiving these "Undelivered Mail alerts", whose email address is in my contacts and therefore should be treated as safe by Windows Mail as per my settings, are suddenly being sent directly into my junk E-mail box...
I have pasted the "Undelivered Mail Returned to Sender message bellow.
Could you be so kind as to let me know whether this is a genuine response or is it a virus, or is it my wondows Mail having problems, etc... I have Norton 360 on my PC and comprehensive scans show no threats....
And what can I do to resolve this problem?
From: MAILER-DAEMON (Mail Delivery System)
This is the Postfix program at host deferred-out-118.livemail.co.uk.
I'm sorry to have to inform you that the message returned
below could not be delivered to one or more destinations.
For further assistance, please send mail to <postmaster>
If you do so, please include this problem report. You can
delete your own text from the message returned below.
The Postfix program
<email@example.com>: connect to mx.terra.es[126.96.36.199]: server
refused mail service
Reporting-MTA: dns; deferred-out-118.livemail.co.uk
X-Postfix-Sender: rfc822; info@xxxxxxxx
Arrival-Date: Sat, 5 Mar 2011 16:06:03 +0000 (GMT)
Final-Recipient: rfc822; firstname.lastname@example.org
Diagnostic-Code: X-Postfix; connect to mx.terra.es[188.8.131.52]: server
refused mail service
Hi, Apologies in advance for this simple question but I dont have access to a MessageLabs console to confirm. My customer currently has one Exchange 2003 server routing mail to\from messagelabs. They will be replacing it with two Exchange 2010 transport servers for inbound\outbound smtp. Is there a best practice for setting them up in MessageLabs? i.e. support for more than one inbound gateway, using a separate external IP address for each transport server etc.?
Thanks in advance,
We have blocked the email and domain of a company that is sending us spam constantely, but we are still receiving emails from them.
Is their a setting or change we need to make in order to stop this?
We have blocked other domsina before and this has not proved to be a issue like this is turning out to be.
I have a Windows SBS 2008 server with a mix of XP and W7 clients running SEP v11.x
I wish to replace these clients with the Symantec Cloud product.
The documentation for the Symantec Cloud version of AV is confusing. In one place it states that the installation will uninstall SEP and in another place it states that all Symantec Products must be removed before installation of the Cloud product.
Where can I find definitive documentation?
Thanks in advance.
The organisation I work for has changed the way we deliver mail so we now use our exchange server to deliver through our message security service, instead of sending through our ISP's smarthost - a change that is working very well for most of our needs.
We send out newsletters to organisations who subscribe to them but since changing our mail delivery system, we are getting lots of NDR's (non delivery reports)
One common NDR with a 4.4.7 (The message in the queue has expired. The sending server tried to relay or deliver the message, but the action was not completed before the message expiration time occurred.) where the header includes the following:
Received: from mailx.bemtaxx.messagelabs.com ([193.109.xxx.xxx]) by exfe2.theirexample.org.uk over TLS secured channel with Microsoft SMTPSVC(6.0.3790.3959); Thu, 5 Jan 2012 17:08:15 +0000 Return-Path: <email@example.com> Received: from [193.xxx.xxx.xxx:15511] by server-x.bemta-xx.messagelabs.com id xx/E2-xx84-DF8D50F4; Thu, 05 Jan 2012 17:08:13 +0000 X-Env-Sender: firstname.lastname@example.org X-Msg-Ref: server-x.tower-xx.messagelabs.com!1xxxxx195!72xxxx3!1 X-Originating-IP: [207.xxx.xxx.xxx] X-SpamReason: No, hits=0.0 required=7.0 tests=Mail larger than max spam size
I need to know whether this translates as " your email has too high a spam count for message labs to deliver it"
or " The message has an attachment that is too large" or "we aren't going to deliver this as we think its spam as it was sent BCC instead of TO a recipient"
Many thanks for any insight
We are having a problem with symantec cloud (formerly messagelabs) and our email being blocked by the backscatterer blacklist. We have checked our mail servers and we are NOT sending backscatter.
This blacklist sees backscatter coming from the ip address that our mail is sent from. However we have no control over that ip address, it seems that symantec cloud sends on our email from a range of ip addresses, most of which are blacklisted. Being cloud based in this way is a problem as these ip addresses are used by other cloud customers so If one of them is producing backscatter everyone whose mail is sent via the same ip addresses will also be blacklisted. I assume that is what is happening in this case.
This is causing us a serious business issue as some of our customers use an ISP that uses the backsctterer black list and so they are not getting emails from us and demanding refunds for not getting the notifications they are paying for.
How do we stop this from happening other then to stop using this product?
Mail is randomly being delayed from Exchange 2007 server for several hours. Initially there were DNS lookup errors in the Exchange SMTP protocol logs. The Exchange transport was changed to utilize an external DNS server and the errors went away.
Now the sender get a message delayed message after 4 hours and eventually the message gets delivered. No errors appear in the SMTP send connector logs.
Mail flows properly to all outside domains. The only delays are to Messagelabs servers.
This is an urgent issue. What can I do to resolve this problem?
Some senders of acceptable emails are concerned that their emails are classed as SPAM and quarantined for release by the Messagelabs service.
Although their email addresses can be entered in SPAM Manager as safe, they want to know what they must do to modify their emails to enable all Messagelabs users to have their emails not classed and treated as SPAM.
How can they obtain this information? What can we advise?
I have one question made by a customer of mine for which I cant find documentation to properly answer.
If Im using email security.cloud and for some reason the exchange server goes offline what will happen with all the inbound mails?
Will it get lost or will it wait on queue until the exchange server comes back up?
Also if there's some documentation regarding this any link will be much appreciated
We have a problem about mail security,we saw an issue about our mail clients,
We have a user who name is ayse mehmet.She has an email address which is email@example.com.
However,she is receiving some mails from firstname.lastname@example.org,we wonder that how it is possible that situation?because she says "I didn't send these mails".These mails are coming from outside,not inside.
We wonder that is it a virus?how can we prevent these emails?Can we use brightmail for this problem?
Network Login required using AD LDAP on Symantec BrightMail Gateway Dell Appliance.
Current Version - 10.0.1
We want to use LDAP Single Sign on with the SMG
Please forgive me, this is my first post on this site.
I am having a problem with an email return to one of my customers. My server is a 1and1 Linux business account - shared server.
The return message he gets is the foolowing....
553-you are trying to use me [server-11.tower-51.messagelabs
553-.com] as a relay, but I have not been configured to let
553-you [***.***.***.***, mail.domain.com] do this.
553-Please visit www.messagelabs.com/support for more
553-details about this error message and instructions to
553 resolve this issue. (#5.7.1)
Can anyone please kindly give advise as to what the problem is here ???
I have issue when our company user is trying to send emails to partner domain and gets back always same message from MessageLabs:
#553 Message filtered - Outbound Spam (#5.7.1)
Partner domain is already added to approved senders under Anti-Spam in messagelabs.
Just wondering maybe you have some suggestions what could be reason for this as i cant see anything else wrong in Messagelabs settings
We are an Email Service Provider, and one of our shared IP addresses is consistently being granted a negative reputation by Symantec. I have submitted our IP for investigation several times, each time our reputation is cleared, but within a few hours we're back on the negative list.
We have many clients who rely on the reputation of this Shared IP, and I believe that our presence on any blacklists is a false positive. We are actively removing any clients who may be hitting spam traps or practicing poor list hygeine from this IP, in order to optimize the reputation of this shared IP.
Our users are contractually required to only email contacts who have specifically opted in to receive email. We immediately remove hard bounces from any sending lists, and address any abnormal complaint rates immediately. Our emails are all CAN-SPAM compliant.
Please advise as to what action we can take to remove ourselves from any blacklists. Thank you.
We just activated 4 new ips a few weeks ago and they are being blocked constantly by symantec brightmail (via snds review) despite all our ip's sending the same mail and having no issues at all.
What can we do to resolve this? Is it a false positive due to a previous owner abusing them?
Thank you to anyone who can assist :)
We have a customer Liberty Electronics who quite often has issues getting email through to a business using messagelabs. Their mail server name - mail.libertyelectronics.com; IP Address 184.108.40.206. Below is their latest failure; is the messagelabs spam filter blocking them?
-----Original Message----- From: email@example.com [mailto:firstname.lastname@example.org] Sent: Tuesday, October 01, 2013 6:26 PM To: email@example.com Subject: Undeliverable Mail Delivery failed 20 attempts: firstname.lastname@example.org Body of message generated response: Original message follows. Received: from DellRhoads [10.0.0.122] by libertyelectronics.com with ESMTP (SMTPD-11.5) id fe0c00004e67ba29; Tue, 1 Oct 2013 08:55:55 -0400 From: "Eric Rhoads" <email@example.com> To: "Patrick Ellis" <firstname.lastname@example.org> References: <email@example.com><683C0BE4C62E5246B04DFE00A633386D21DE281A@TXAMASNWH026.ent.textron.com><firstname.lastname@example.org><683C0BE4C62E5246B04DFE00A633386D21DE660C@TXAMASNWH026.ent.textron.com><email@example.com><683C0BE4C62E5246B04DFE00A633386D21DEC448@TXAMASNWH026.ent.textron.com><firstname.lastname@example.org><683C0BE4C62E5246B04DFE00A633386D21E26351@TXAMASNWH026......ent.textron.com><email@example.com><683C0BE4C62E5246B04DFE00A633386D21E29E98@TXAMASNWH026.ent.textron.com><firstname.lastname@example.org><683C0BE4C62E5246B04DFE00A633386D21E29EDB@TXAMASNWH026.ent.textron.com><email@example.com><683C0BE4C62E5246B04DFE00A633386D21E29F08@TXAMASNWH026.ent.textron.com><firstname.lastname@example.org><683C0BE4C62E5246B04DFE00A633386D2 1E2C087@TXAMASNWH026.ent.textron.com> In-Reply-To: Subject: FW: AAI PO 1130229 General Status Date: Tue, 1 Oct 2013 08:55:57 -0400 Organization: Liberty Electroincs, Inc. Message-ID: <email@example.com> MIME-Version: 1.0 Content-Type: multipart/mixed; boundary=_Boundary_085555_40529168.00002718:00000000" X-Mailer: Microsoft Outlook 14.0 Thread-Index: AQIL0CQXzmdGP9NJZxklQxcWasc3wAIlvPjwAtPdwm8B+BoNrAGWOOwgAeEEQvgBfYl6kQHj AQIL0CQXzmdGP9NJZxklQxcWasc3wAIlvPjwAtPdwm8B+NdIc AVlAuukCO15u0QE/XhOiAlWxlCIBdWq4ngGaZrw4Ae2BcfoDWfTAnZh56LMwgAArN9CAAUF9YA= Content-Language: en-us
In the Symantec.cloud > ClientNet > , you can set up alerts via SMS (text message). That is good and we do use it.
However, Symantec.cloud should send those same alerts via SMTP email to my email address.
I have asked about this before.
The usual answer is --- if the problem is with the email system, then sending the alert via email will not work, because email is broken--.
I understand that idea.
However, in most situations I recall over the last few years, sending the Alert via email would have worked very well. Many times it would have been delivered right away, and in other cases perhaps a small delay.
In any case it would be our preferred mehtod to receive those Alerts.
SMS is nice.
But it is not always the answer.
The News Alerts and Service Alerts should also be sent via email.
We do not visit the ClientNet web page "every few hours" just to check to see if there is a new Service Alert.
It just seems really obvious to me that a company that is in the "email business" can send a few simple alert messages via email.
Just about any device now-a-days sends emails.
Why it that so difficult for Symantec,cloud ?
Would be interested to hear if this would be useful to other people.
Using Symantec.cloud ClientNet.
I see the Logon screen quickly, but then when the main screen comes up, it is only half populated. Many of the areas have the spinning circle icon and say --Requesting data-- .
After a while it completes or says try later (or something like that).
A few minutes later, if I navigate to other functions within ClientNet, the response time is "OK".
Trying to determine if this is a local problem here.
Have you seen this slow initial response time ?
A cada 15 dias os ips do meu servidor dedicado estão com reputação baixa no BrightMail.
Preciso saber porque isso está acontecendo, pois eu monitoro o envio de e-mails de perto e não há problemas.
No formulário do BrightMail para remoção de ips, eu sempre solicito nas descrições para me informarem o motivo dos meus ips estartem listados. Mas ninguém me da retorno.
Pelo visto, a rede toda fica com reputação baixa, mas meus servidor não está originando spam. Não posso ser penalizado pelos problemas dos outros.
A rede onde meus ips estão inseridos é: