LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 06-13-2019, 07:55 PM   #1
mfoley
Senior Member
 
Registered: Oct 2008
Location: Columbus, Ohio USA
Distribution: Slackware
Posts: 2,564

Rep: Reputation: 177Reputation: 177
Cannot use ports 25, 587 or 465 from France to US


Interesting new problem. I've just arrived in France from the US. My cell phone and Thunderbird client (both on WiFi) use port 25 to send outgoing mail to a server in the US. I cannot connect to any port 25 on the various US based servers I know. I've tried telnet'ing to ports 25 and 587 to servers I know are listening on these ports. No go, yet from within the US, no problem. I've also run 'ncat -k -lv -p 465' on a US server and tried telnet'ing to it - nothing. The French ISP is Freebox and the local (French) IP is 82.243.111.216.

There is nothing in the US server's maillog and, in fact, is simply not connecting at all.

I've traveled to France yearly for the past 12 years and never run into this problem -- although this time I'm in Lille and before I was in either Paris or Burgundy.

Any ideas? For the moment I an ssh'ing into a US server (interestingly port 22 is open) and running mailx to read and send mail.
 
Old 06-13-2019, 08:41 PM   #2
frankbell
LQ Guru
 
Registered: Jan 2006
Location: Virginia, USA
Distribution: Slackware, Ubuntu MATE, Mageia, and whatever VMs I happen to be playing with
Posts: 19,332
Blog Entries: 28

Rep: Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144Reputation: 6144
Try a traceroute. That might give you some hint as to where the connection is failing.
 
Old 06-13-2019, 08:53 PM   #3
jefro
Moderator
 
Registered: Mar 2008
Posts: 21,992

Rep: Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628Reputation: 3628
Ask a local that has a different provider maybe to double check??
 
Old 06-13-2019, 09:25 PM   #4
michaelk
Moderator
 
Registered: Aug 2002
Posts: 25,724

Rep: Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918Reputation: 5918
I am not surprised. I would assume your mail servers have added restrictions to block access. It could be a particular ISP address range or all of France or maybe non US ISPs. Your using ssh as a VPN and therefore the mail servers think your in the US versus France.
 
Old 06-13-2019, 10:53 PM   #5
scasey
LQ Veteran
 
Registered: Feb 2013
Location: Tucson, AZ, USA
Distribution: CentOS 7.9.2009
Posts: 5,732

Rep: Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212
Generally speaking, one does not connect to port 25 to send mail, and, in the US at least, most all residential ISPs block access to that port to prevent abuse. I'd expect the same of Proxad/Freebox. I am surprised that is the OPs client configuration for sending email.

587 and 465 are ports used for connecting to send email (I know...y'all already knew that), and it would be pretty strange for an ISP to block them outbound, but it could be blocked by the server because of abuse/cracking attempts inbound. I've lost count of the number of IPs we block for that reason....thousands, I expect, tho we don't block the posted IP.

If you can ssh to a server that's not allowing the connection, you should be able to 1) confirm that it's listening on the port to which you're trying to connect and 2) identify what's causing the refusal (iptables, firewall-cmd, tcp.smtp, etc.) Any of those should log a rejection. On my server those are in /var/log/messages for firewall-cmd and /var/log/qmail/* logs for the smtp servers, not in maillog.

Last edited by scasey; 06-13-2019 at 10:56 PM. Reason: l
 
1 members found this post helpful.
Old 06-14-2019, 12:36 AM   #6
mfoley
Senior Member
 
Registered: Oct 2008
Location: Columbus, Ohio USA
Distribution: Slackware
Posts: 2,564

Original Poster
Rep: Reputation: 177Reputation: 177
Quote:
Originally Posted by scasey View Post
Generally speaking, one does not connect to port 25 to send mail, and, in the US at least, most all residential ISPs block access to that port to prevent abuse. I'd expect the same of Proxad/Freebox. I am surprised that is the OPs client configuration for sending email.
Thanks for all the feedback. scasey, I did ssh to a server not allowing the connection and listened to the ports using ncat. But, you did put your finger on the problem.

25 does appear to be blocked at the French ISP end. I have configured the US mail server and yes, it does listen on 25, and no, the US ISP does not block 25. It also listens on 587 however, the router on the US mail server was not forwarding port 587. I just tried enabling 587 to forward to the mail server (fortunately, I have the router configured for remote admin) and I was then able to send mail from France using that US mail server. So problem understood (thanks to scasey) and solved.

Last edited by mfoley; 06-14-2019 at 01:26 PM.
 
Old 06-14-2019, 02:48 AM   #7
scasey
LQ Veteran
 
Registered: Feb 2013
Location: Tucson, AZ, USA
Distribution: CentOS 7.9.2009
Posts: 5,732

Rep: Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212Reputation: 2212
I'm glad to be able to help point you in the right direction.
 
  


Reply

Tags
blocked, mailing



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
ssmtp says cannot open mailhub:25, but I have 465 set as port... charlemagne-is-my-son Linux - Software 1 12-20-2014 05:32 PM
How to configure IPTABLES to allow certain IP ranges to ports 25 and 465 vitalbon Linux - Software 7 02-17-2011 01:21 PM
Connection refused to port 25 and 587 but sendmail listening on those ports. eltraje Linux - Newbie 2 01-01-2010 05:05 PM
Openning ports - 587 ziphem Linux - Newbie 10 08-17-2005 08:14 AM
465 Infected Ports. How reliable is chkroot? xbaez Linux - Security 1 01-12-2005 09:29 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 12:07 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration