Notice: Undefined offset: 68 in /var/www/codoforum/sys/CODOF/Forum/Category.php on line 241

Notice: Trying to get property 'cat_name' of non-object in /var/www/codoforum/sys/CODOF/Forum/Category.php on line 241

Notice: Undefined offset: 68 in /var/www/codoforum/sys/CODOF/Forum/Category.php on line 242

Notice: Trying to get property 'cat_alias' of non-object in /var/www/codoforum/sys/CODOF/Forum/Category.php on line 242

Notice: Undefined offset: 68 in /var/www/codoforum/sys/CODOF/Forum/Category.php on line 238

Notice: Trying to get property 'cat_pid' of non-object in /var/www/codoforum/sys/CODOF/Forum/Category.php on line 238
DNS or Firewall? | PMAIL COMMUNITY
Networking
DNS or Firewall?

[quote user="blueberner69"]

I just installed the Windows 7 upgrade. Now I have problems with the firewall. It is prompting me that the firewall in not turned on & prompts me to use the recommended settings.

When I click on this the message "Windows firewall can't change some of your settings Error code 0x80070422". Someone can help? Thank you! 

[/quote]

This is a Pegasus Mail forum not a Windows 7 forum. You would be better off asking this question on Microsoft's forums, and you would have been much better off starting a new thread instead of resurrecting an ancient question.

0x800xxxxxx are usually permissions based error codes - your account does not have sufficient privileges to perform the action.

[quote user="blueberner69"] <P><SPAN style="FONT-SIZE: 15px; FONT-FAMILY: 'Segoe UI', Arial, sans-serif; COLOR: rgb(51,51,51); LINE-HEIGHT: 20px">I just installed the Windows 7 upgrade. Now I have problems with the firewall. It is prompting me that the firewall in not turned on & prompts me to use the recommended settings. </SPAN></P> <P><SPAN style="FONT-SIZE: 15px; FONT-FAMILY: 'Segoe UI', Arial, sans-serif; COLOR: rgb(51,51,51); LINE-HEIGHT: 20px">When I click on this the message "Windows firewall can't change some of your settings Error code 0x80070422". Someone can help? Thank you!</SPAN><SPAN style="FONT-SIZE: 10pt"> </SPAN></P> <P>[/quote]</P> <P>This is a Pegasus Mail forum not a Windows 7 forum. You would be better off asking this question on Microsoft's forums, and you would have been much better off starting a new thread instead of resurrecting an ancient question.</P> <P>0x800xxxxxx are usually permissions based error codes - your account does not have sufficient privileges to perform the action.</P>

Does this sound like a DNS routing problem or firewall routing problem?

The host 'pop.neocap.org' could not be found. Please verify that you have entered the server name correctly. Account: 'NEOCAP POP', Server: 'pop.neocap.org', Protocol: POP3, Port: 995, Secure(SSL): Yes, Socket Error: 11001, Error Number: 0x800CCC0D

 I have an A record named pop.neocap.org pointing to my static IP.

<P>Does this sound like a DNS routing problem or firewall routing problem?</P> <P>The host 'pop.neocap.org' could not be found. Please verify that you have entered the server name correctly. Account: 'NEOCAP POP', Server: 'pop.neocap.org', Protocol: POP3, Port: 995, Secure(SSL): Yes, Socket Error: 11001, Error Number: 0x800CCC0D</P> <P> I have an A record named pop.neocap.org pointing to my static IP.</P>

[quote user="cynist"]Does this sound like a DNS routing problem or firewall routing problem?

The host 'pop.neocap.org' could not be found. Please verify that you have entered the server name correctly. Account: 'NEOCAP POP', Server: 'pop.neocap.org', Protocol: POP3, Port: 995, Secure(SSL): Yes, Socket Error: 11001, Error Number: 0x800CCC0D

 I have an A record named pop.neocap.org pointing to my static IP.

Not sure what to tell you but I do not see an A record for this host name only a CNAME and the CNAME is the same.  This CNAME probsably should point to neocap.org. 

This might also be a router/firewall problem as well but it's definitely a problem in the DNS.  FWIW, I can connect to port 25 of either neocap.org or 71.2.1.226 so at least we know port 25 is open to the Mercury server.

 Answer Section:
    pop.neocap.org, CNAME, pop.neocap.org
Authority Records Section:
    neocap.org, NS, ns24.domaincontrol.com
    neocap.org, NS, ns23.domaincontrol.com
Additional Records Section:
    ns23.domaincontrol.com, A, 216.69.185.12
    ns24.domaincontrol.com, A, 208.109.255.12

The domain also has a problem in that the MX host record points to a IP address and that makes it invalid.  The MX record should probably be

neocap.org, MX, 10, neocap.org

if the IP address 71.2.1.226 is a fixed IP address.

Answer Section:
    neocap.org, MX, 0, 71.2.1.226
    neocap.org, A, 71.2.1.226 

The mail.neocap.org is also bad.  Normally this would have a A record pointing at 71.2.1.226

Answer Section:
    mail.neocap.org, CNAME, mail.neocap.org[/quote]

<blockquote>[quote user="cynist"]Does this sound like a DNS routing problem or firewall routing problem?<p>The host 'pop.neocap.org' could not be found. Please verify that you have entered the server name correctly. Account: 'NEOCAP POP', Server: 'pop.neocap.org', Protocol: POP3, Port: 995, Secure(SSL): Yes, Socket Error: 11001, Error Number: 0x800CCC0D</p><p> I have an A record named pop.neocap.org pointing to my static IP.</p></blockquote><p>Not sure what to tell you but I do not see an A record for this host name only a CNAME and the CNAME is the same.  This CNAME probsably should point to neocap.org.  </p><p>This might also be a router/firewall problem as well but it's definitely a problem in the DNS.  FWIW, I can connect to port 25 of either neocap.org or 71.2.1.226 so at least we know port 25 is open to the Mercury server.</p><p> Answer Section:     pop.neocap.org, CNAME, pop.neocap.org Authority Records Section:     neocap.org, NS, ns24.domaincontrol.com     neocap.org, NS, ns23.domaincontrol.com Additional Records Section:     ns23.domaincontrol.com, A, 216.69.185.12     ns24.domaincontrol.com, A, 208.109.255.12</p><p>The domain also has a problem in that the MX host record points to a IP address and that makes it invalid.  The MX record should probably be </p><p>neocap.org, MX, 10, neocap.org </p><p>if the IP address 71.2.1.226 is a fixed IP address. </p><p>Answer Section:     neocap.org, MX, 0, 71.2.1.226     neocap.org, A, 71.2.1.226 </p><p>The mail.neocap.org is also bad.  Normally this would have a A record pointing at 71.2.1.226</p><p>Answer Section:     mail.neocap.org, CNAME, mail.neocap.org[/quote]</p>

I made the MX change and left pop.neocap.org and smtp.neocap.org CNAMES since they both point to the same ip as the main A record.  Everything still seems to be working from behind the firewall.  I'm just not able to connect from outside client.  Are my DNS setting correct now?

<P>I made the MX change and left pop.neocap.org and smtp.neocap.org CNAMES since they both point to the same ip as the main A record.  Everything still seems to be working from behind the firewall.  I'm just not able to connect from outside client.  Are my DNS setting correct now?</P>

[quote user="cynist"]

I'm a little confused because Godaddy's DNS Control Panel gives these specific instructions for the MX record.

To create a new MX record for your domain; enter the priority value (0 - 9999) and complete the Host Name, "Goes To. IP Address, and TTL Value fields; then click "Continue."

Note: The "Host Name" should be defined as your domain name (i.e., "domainnamegoeshere.com") or "@" (Entering "@" will automatically insert your domain name as the host name for the MX Record). If the MX Record is for the domain "www.domainnamegoeshere.com," the host name should be entered as "www."

Do not enter "www.domainnamegoeshere.com" as the host name.

Not sure what to tell you.  I use Godaddy with two of my domain names and I'm using full host names for the MX hosts without any problem.  The primary MX points to my host name and the secondary goes to an off site MX host provided by my ISP.

I can send and receive extermal SMTP mail through Mercury from behind my firewall with no problem.  I just can't connect from a client outside of the firewall to Mercury.  I'll make the MX change per your suggestion and see what happens.  Also, maybe I need to delete the CNAME entries if I put A records with the same?  If I have both would that confuse DNS?

A CNAME should only be used if you want  to create a different host name for an existing host name.  For example if you want to create a POP.domain.com and point it to domain.com to make it easier for the users then a CNAME entry would be useful.  The host name pointed to by the CNAME record must have an A record.

[/quote]
<blockquote>[quote user="cynist"]<p>I'm a little confused because Godaddy's DNS Control Panel gives these specific instructions for the MX record.</p><p><i>To create a new MX record for your domain; enter the priority value (0 - 9999) and complete the Host Name, "Goes To. IP Address, and TTL Value fields; then click "Continue." </i></p><p><i>Note: The "Host Name" should be defined as your domain name (i.e., "domainnamegoeshere.com") or "@" (Entering "@" will automatically insert your domain name as the host name for the MX Record). If the MX Record is for the domain "www.domainnamegoeshere.com," the host name should be entered as "www." </i> </p><p><i>Do not enter "www.domainnamegoeshere.com" as the host name. </i></p></blockquote><p>Not sure what to tell you.  I use Godaddy with two of my domain names and I'm using full host names for the MX hosts without any problem.  The primary MX points to my host name and the secondary goes to an off site MX host provided by my ISP. </p><blockquote><p>I can send and receive extermal SMTP mail through Mercury from behind my firewall with no problem.  I just can't connect from a client outside of the firewall to Mercury.  I'll make the MX change per your suggestion and see what happens.  Also, maybe I need to delete the CNAME entries if I put A records with the same?  If I have both would that confuse DNS?</p></blockquote><p>A CNAME should only be used if you want  to create a different host name for an existing host name.  For example if you want to create a POP.domain.com and point it to domain.com to make it easier for the users then a CNAME entry would be useful.  The host name pointed to by the CNAME record must have an A record. </p><blockquote>[/quote]</blockquote>

[quote user="Thomas R. Stephenson"]

A CNAME should only be used if you want  to create a different host name for an existing host name.  For example if you want to create a POP.domain.com and point it to domain.com to make it easier for the users then a CNAME entry would be useful.  The host name pointed to by the CNAME record must have an A record.

[/quote]

But all three are pointing to the same IP because this IP is my static firewall IP: neocap.org, pop.neocap.org, and smtp.neocap.org.  In this scenario what should my pop and smtp setting in the client be set to?  Do I delete the CNAMES insert pop.neocap.org and smtp.neocap.org as A records and then use these in my settings to point the client in the correct direction?

[quote user="Thomas R. Stephenson"] <P>A CNAME should only be used if you want  to create a different host name for an existing host name.  For example if you want to create a POP.domain.com and point it to domain.com to make it easier for the users then a CNAME entry would be useful.  The host name pointed to by the CNAME record must have an A record.</P> <P>[/quote]</P> <P>But all three are pointing to the same IP because this IP is my static firewall IP: neocap.org, pop.neocap.org, and smtp.neocap.org.  In this scenario what should my pop and smtp setting in the client be set to?  Do I delete the CNAMES insert pop.neocap.org and smtp.neocap.org as A records and then use these in my settings to point the client in the correct direction?</P>

[quote] In this scenario what should my pop and smtp setting in the client be set to?[/quote]

Whatever works. You can even use just the IP address.

For the sake of simplicity, you could just forget using 'pop.neocap.org' & 'smtp.neocap.org' and in your mail client enter 'neocap.org' as the servername for both POP & SMTP.

<p>[quote] In this scenario what should my pop and smtp setting in the client be set to?[/quote]</p><p>Whatever works. You can even use just the IP address. </p><p>For the sake of simplicity, you could just forget using 'pop.neocap.org' & 'smtp.neocap.org' and in your mail client enter 'neocap.org' as the servername for both POP & SMTP. </p>

With your help I was able to get through to Mercury.  Now when trying to access the server via POP it is asking me for a username and password.  I tried my Mercury username and password but it didn't like that. 

  1. Is there a different area that I need to populate with a user list so I can log in?

  2. What does the POP3 aliasing file do?  It's not listed in the help file.
<P>With your help I was able to get through to Mercury.  Now when trying to access the server via POP it is asking me for a username and password.  I tried my Mercury username and password but it didn't like that.  </P> <OL> <LI>Is there a different area that I need to populate with a user list so I can log in? <LI>What does the POP3 aliasing file do?  It's not listed in the help file.</LI></OL>

[quote user="cynist"]

With your help I was able to get through to Mercury.  Now when trying to access the server via POP it is asking me for a username and password.  I tried my Mercury username and password but it didn't like that. 

1.  Is there a different area that I need to populate with a user list so I can log in?

Nope, the username is the name of the directory of the user and the password is what is set in the passwd.pm file in that directory.  When you setup or change data using the Manage local users you need to use the CTRL+Configuration + Manage local users or reboot Mercury/32 to make them active.

2.  What does the POP3 aliasing file do?  It's not listed in the help file.
Not sure what POP3 aliasing you are talking about.  There are aliases that convert an email address as received by MercuryD or MercuryS to a local email address of a user but other than that nothing comes to mind.

In any case, turn on the MercuryP session logging to see exactly what is going on.[/quote]
<blockquote>[quote user="cynist"]<p>With your help I was able to get through to Mercury.  Now when trying to access the server via POP it is asking me for a username and password.  I tried my Mercury username and password but it didn't like that.  </p><blockquote><p>1.  Is there a different area that I need to populate with a user list so I can log in? </p></blockquote></blockquote><p>Nope, the username is the name of the directory of the user and the password is what is set in the passwd.pm file in that directory.  When you setup or change data using the Manage local users you need to use the CTRL+Configuration + Manage local users or reboot Mercury/32 to make them active. </p><blockquote><blockquote>2.  What does the POP3 aliasing file do?  It's not listed in the help file.</blockquote></blockquote>Not sure what POP3 aliasing you are talking about.  There are aliases that convert an email address as received by MercuryD or MercuryS to a local email address of a user but other than that nothing comes to mind. In any case, turn on the MercuryP session logging to see exactly what is going on.[/quote]

In Mercury32 go to Configuration\POP3 Server\Connection Control and at the bottom there is an option to edit POP3 Alias File.

<P>In Mercury32 go to Configuration\POP3 Server\Connection Control and at the bottom there is an option to edit POP3 Alias File.</P>

This is so a user can log in to the POP3 server as 'jimbob' and this name is translated to the real username of 'user_2315'.

 

<p>This is so a user can log in to the POP3 server as 'jimbob' and this name is translated to the real username of 'user_2315'.</p><p>  </p>

Thanks for the explaination.

I am able to connect to Mercury through IMAP from a client on the internet but not through POP.  It keeps asking me for a username and password.  Any ideas as to why one works and not the other?

<P>Thanks for the explaination.</P> <P>I am able to connect to Mercury through IMAP from a client on the internet but not through POP.  It keeps asking me for a username and password.  Any ideas as to why one works and not the other?</P>

[quote user="cynist"]

Thanks for the explaination.

I am able to connect to Mercury through IMAP from a client on the internet but not through POP.  It keeps asking me for a username and password.  Any ideas as to why one works and not the other?

The only thing I can think of that would do this is that you have used a bad user name and password that was bad and the POP3 account is in the temporary block list.  Try turning on session logging in MercuryP  to see exactly why you cannot connect.  You also may be trying to use a non-SSL connection and the POP3 is set for SSL or vice-versa.[/quote]

<blockquote>[quote user="cynist"]<p>Thanks for the explaination.</p><p>I am able to connect to Mercury through IMAP from a client on the internet but not through POP.  It keeps asking me for a username and password.  Any ideas as to why one works and not the other?</p></blockquote><p>The only thing I can think of that would do this is that you have used a bad user name and password that was bad and the POP3 account is in the temporary block list.  Try turning on session logging in MercuryP  to see exactly why you cannot connect.  You also may be trying to use a non-SSL connection and the POP3 is set for SSL or vice-versa.[/quote]</p>

Update:

Last night I was able to retrieve POP mail but still not able to send SMTP from home. 

  1. Could this be a relay problem?  I have the server set to not relay and I know Mercury doesn't recognize my dynamic home dsl ip.  How would I correct this?
  2. To secure the transmission of IMAP, POP, and SMTP all I need to do is check the SSL/TLS in mercury and then check the "This server requires a secure connection" in the client?  Do I need to do anything with the cert on the client side?
<P>Update:</P> <P>Last night I was able to retrieve POP mail but still not able to send SMTP from home.  </P> <OL> <LI>Could this be a relay problem?  I have the server set to not relay and I know Mercury doesn't recognize my dynamic home dsl ip.  How would I correct this?</LI> <LI>To secure the transmission of IMAP, POP, and SMTP all I need to do is check the SSL/TLS in mercury and then check the "This server requires a secure connection" in the client?  Do I need to do anything with the cert on the client side?</LI></OL>

[quote user="cynist"]

Update:

Last night I was able to retrieve POP mail but still not able to send SMTP from home. 

What mail client are you using?  

1.  Could this be a relay problem?  I have the server set to not relay and I know Mercury doesn't recognize my dynamic home dsl ip.  How would I correct this?
Could be.  You can turn on the ESMTP AUTH in MercuryS  and then setup the auth file with the usernames and passwords.  In any case you can turn on session logging to verify what you are sending to the server and the related error messages.
2.  To secure the transmission of IMAP, POP, and SMTP all I need to do is check the SSL/TLS in mercury and then check the "This server requires a secure connection" in the client?  Do I need to do anything with the cert on the client side?
Should not have to do anything except turn on the proper SSL/TLS in the client.  That said if you are using Outlook or OE they can't do the correct SSL/TLS.  With these you cannot send using SSL/TLS[/quote]
<blockquote>[quote user="cynist"]<p>Update:</p><p>Last night I was able to retrieve POP mail but still not able to send SMTP from home.  </p></blockquote><p>What mail client are you using?   </p><blockquote><blockquote>1.  Could this be a relay problem?  I have the server set to not relay and I know Mercury doesn't recognize my dynamic home dsl ip.  How would I correct this?</blockquote></blockquote>Could be.  You can turn on the ESMTP AUTH in MercuryS  and then setup the auth file with the usernames and passwords.  In any case you can turn on session logging to verify what you are sending to the server and the related error messages. <blockquote><blockquote>2.  To secure the transmission of IMAP, POP, and SMTP all I need to do is check the SSL/TLS in mercury and then check the "This server requires a secure connection" in the client?  Do I need to do anything with the cert on the client side?</blockquote></blockquote>Should not have to do anything except turn on the proper SSL/TLS in the client.  That said if you are using Outlook or OE they can't do the correct SSL/TLS.  With these you cannot send using SSL/TLS[/quote]

Thanks.  At home I was using OE and that explains my problem.  I'll install PMail at home and see if it works.

I will also turn on authentication in MercuryS and create the file to see if that solves my problem.

<P>Thanks.  At home I was using OE and that explains my problem.  I'll install PMail at home and see if it works.</P> <P>I will also turn on authentication in MercuryS and create the file to see if that solves my problem.</P>

> I made the MX change and left pop.neocap.org and smtp.neocap.org
> CNAMES since they both point to the same ip as the main A record.
> Everything still seems to be working from behind the firewall. I'm
> just not able to connect from outside client. Are my DNS setting
> correct now?

I've got a number of domain names pointing to the same IP address.   In all cases I set an A record to the IP address and an MX record to the actual host name of the server.  Here's my domains section and you can use your NSLOOKUP tool to see what I have set for the domains in the DNS.  A couple of these are local only domains I use for testing and I have bolded these since they are not real domains.  I can access these domains from the outside via my router.  I use daemons and other tools to move the mail to internal servers where required.

[Domains]
stephens: stephens
stephens: [209.128.94.2]    # external IP address
stephens: mail.tstephenson.com
stephens: tstephenson.com
stephens: [192.168.1.2]   # internal IP address
dm=merwin: merwin-tstephenson.com
daemon:c:\mercury\mercfwd.dll;[192.168.1.43]: linux-tstephenson.com
dm=merc452: merc452.tstephenson.com
dm=dyndns: dyndns-tstephenson.dyndns.org
dm=merwin: merwin.dyndns.org
daemon:c:\mercury\mercfwd.dll;[192.168.1.3]: novell-tstephenson.com
daemon:c:\mercury\mercfwd.dll;[192.168.1.31]: xampp.from-ca.com
dm=bayarea1: bayarea-tstephenson.com

> I made the MX change and left pop.neocap.org and smtp.neocap.org > CNAMES since they both point to the same ip as the main A record. > Everything still seems to be working from behind the firewall. I'm > just not able to connect from outside client. Are my DNS setting > correct now? I've got a number of domain names pointing to the same IP address.   In all cases I set an A record to the IP address and an MX record to the actual host name of the server.  Here's my domains section and you can use your NSLOOKUP tool to see what I have set for the domains in the DNS.  A couple of these are local only domains I use for testing and I have bolded these since they are not real domains.  I can access these domains from the outside via my router.  I use daemons and other tools to move the mail to internal servers where required. [Domains] stephens: stephens stephens: [209.128.94.2]    # external IP address stephens: mail.tstephenson.com stephens: tstephenson.com stephens: [192.168.1.2]   # internal IP address dm=merwin: merwin-tstephenson.com daemon:c:\mercury\mercfwd.dll;[192.168.1.43]: linux-tstephenson.com dm=merc452: <b>merc452.tstephenson.com</b> dm=dyndns: dyndns-tstephenson.dyndns.org dm=merwin: merwin.dyndns.org daemon:c:\mercury\mercfwd.dll;[192.168.1.3]: novell-tstephenson.com daemon:c:\mercury\mercfwd.dll;[192.168.1.31]: xampp.from-ca.com dm=bayarea1: <b>bayarea-tstephenson.com</b>

[quote user="john2012"]I was able to retrieve POP mail but still not able to send SMTP from home[/quote]

Posted to wrong thread?

<P>[quote user="john2012"]<SPAN style="FONT-SIZE: 12px; FONT-FAMILY: Tahoma, Arial, Helvetica; TEXT-ALIGN: left">I was able to retrieve POP mail but still not able to send SMTP from home</SPAN>[/quote]</P> <P>Posted to wrong thread?</P>
live preview
enter atleast 10 characters
WARNING: You mentioned %MENTIONS%, but they cannot see this message and will not be notified
Saving...
Saved
With selected deselect posts show selected posts
All posts under this topic will be deleted ?
Pending draft ... Click to resume editing
Discard draft