Pages

Sunday, August 20, 2006

Exchange: NDR 571 - MAIL REFUSED - Reverse DNS failed; cannot resolve the domain in the HELO command

Summary:

You receive the following NDR when sending to a third party domain:


Your message has encountered delivery problems
to the following recipient(s):

user@externaldomain.com
Delivery failed
571 - MAIL REFUSED - Reverse DNS failed; cannot resolve the (yourmailserverhostname.domain.com) domain in the HELO command.

You verify that your domain does indeed have a Reverse DNS Record.

Cause:

The third party domain is performing HELO lookups, also known as forward DNS lookup. When initiating a SMTP session with a third party domain, the domain validates your domain name by performing a forward check, Domain to IP rather than IP to Domain in reverse DNS lookups. If you designed your DNS namespace for Active Directory and chose a namespace different than your public domain name ie. company.local, your Exchange server by default will advertise as HELO I'm hostname.company.local. The third party domain will attempt to lookup company.local in DNS and will fail and thus reject your E-Mail.

Resolution:

1. Open Exchagne System Manager. Navigate to Administrative Groups, Site, Servers, Servername, Protocols, SMTP, Default SMTP Virtual Server,

2. Highlight Default SMTP Virtual Server, right click properties.

3. Go to the Delivery Tab, and click Advanced Button.

4. In the "Fully-qualified domain name: field, enter your fully qualified external domain name. Click Check DNS to verify that it resolves.

5. Restart SMTP service.

James Chong
MCSE M+, S+, MCTS, Security+
msexchangetips.blogspot.com


How useful was this article? Want to see a tip not listed? Please leave a comment.

20 comments:

  1. Anonymous5:51 AM

    Excellent - exactly what I needed. Thanks!

    ReplyDelete
  2. Anonymous6:30 AM

    Thanks, saved me a lot of searching!

    ReplyDelete
  3. Anonymous6:54 AM

    Cool work James, thank You.

    ReplyDelete
  4. Anonymous2:52 AM

    excellent, good job. tank you

    ReplyDelete
  5. Anonymous4:24 PM

    excelente, muchas gracias

    juancm


    excelent, very thanks
    juancm

    ReplyDelete
  6. Anonymous1:34 PM

    Yes!! You da' Man!

    ReplyDelete
  7. Anonymous2:41 AM

    good job. thank you.

    ReplyDelete
  8. Anonymous1:23 PM

    Is there a resoluton for an exchange server running 2007? Procedure might be different? I have this issue with one domain and I tried to change the name to no avail, and most of the searches seem to be with Exchange 2003

    ReplyDelete
  9. Anonymous9:30 AM

    Thank you very much. It really helped.

    ReplyDelete
  10. Anonymous5:26 PM

    Polished golden brass metallic pieces greatly match with the gorgeous patent leather. Metal plate with the replica handbags signature on the flap is telling us that the exquisite purse is from replica bags . With the press stud closure, designer replica handbags is measured at 9.4" x 4.7" x 1.2". For a dinner or party, the size is just right. Moreover, it has inside space for six credit cards and a zippered pocket for small change or other accessories. With removable strap made of gold brass chain and patent leather, designer handbags can be hand-held or carried on the shoulder.

    ReplyDelete
  11. Thanks for your help,

    i have this problem but just with one Domain, mailing to other domains worked fine for 6 years. Should I make this test if i only have fails with an unique domain?

    Thanks

    ReplyDelete