Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Administrators

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 06-30-2011, 10:24 PM
Active Member
 
Posts: 37
Default [SOLVED] No outside connectivity after install?

Hi,
I have a weird, and rather urgent problem...

Have ZCS installed, all seemed to go well, and I DID have connectivity to the outside world (otherwise couldn't have done the atp-get updates and upgrades)

made a DNS change and put the box on the network tonight.

now, I cannot seem to ping, or access external sites (all outgoing mail is deferred)

I am really confused! I know that it was working prior to the install, but now it seems to have no connectivity to the outside world.
thought it might be dns, but now I can't ping by IP address either...

So frustrated, anyone with any insights or pointers as to where to look for problems? restarted the network - no change...
rebooted the box - no change...
I'm going crazy! I'm probably overlooking something...
Reply With Quote
  #2 (permalink)  
Old 06-30-2011, 11:16 PM
Zimbra Consultant & Moderator
 
Posts: 20,315
Default

What DNS changes did you make (and why)? Are you sure your DNS server is running?
__________________
Regards


Bill
Reply With Quote
  #3 (permalink)  
Old 06-30-2011, 11:18 PM
Active Member
 
Posts: 37
Default

Ok, have given up for the night, had to restore the original mail server.

Here's more info on what I attempted:

ubuntu 10.04, zcs open source edition. install seemed to go smoothly...

original mail server still online, firewall is forwarding smtp and doing NAT to it's non-routable ip address (10.0.0.2) DNS still points to this box (actually WAN side IP of firewall)

ZCS was set up with IP of 10.0.0.10, after the install I began to create user accounts, domain alias, user aliases, etc...this time usernames were unique and different from former e-mail addresses (i.e. instead of joe@domain, he is now jplastname@domain.com)

tested the mail on the zcs, by logging into web interface and sending mail to / from users internally - seems to work.

Here's where I didn't check for external connectivity i.e. ping an outside domain.

after the business closed for the evening, changed the MX records for my domain, and made the ZCS have a priority of 10 (A records already in place), changed the forwarding rules on the firewall to point to the new internal ip address, and waited for DNS to propogate, and began to test.

Sent a few test e-mails from my gmail account, seemed to work as expected, but, when I tried to reply - no replies sent

there were entries in the "deferred" queue, and the error was "host not found"

checking server status also showed that antispam and antivirus had red "x"'s

tried to ping a host from the command line - no response
figured it could be DNS, so I tried pinging by ip address - still no response.

The odd thing is, I know I had connectivity earlier, because I ran the
apt-get update and apt-get upgrade commands, and all worked fine.

checked the config files, all seems to be correct. still can't get to the outside world...

restarted networking, restarted the entire server, still no connectivity.

so, I hope that's enough background information, perhaps someone can suggest what logs to check, or other troubleshooting means...

I've re-os'd and re-installed zcs probably 4 times trying to get it to work right, hoping one of these times it will work...
Reply With Quote
  #4 (permalink)  
Old 06-30-2011, 11:20 PM
Active Member
 
Posts: 37
Default

Quote:
Originally Posted by phoenix View Post
What DNS changes did you make (and why)? Are you sure your DNS server is running?
The DNS changes were made to the public DNS MX records to make the ZCS the primary (score 10) MX for the domain...

started / restarted bind - got a reply of OK for both...
Reply With Quote
  #5 (permalink)  
Old 06-30-2011, 11:23 PM
Zimbra Consultant & Moderator
 
Posts: 20,315
Default

Is this server on a public IP or on a LAN? When you say 'no connectivity', what exactly do you mean? Can you ping any outside addresses? Is your resolve.conf correct and does it point to a DNS server? Do you have a DNS server running on your Zimbra server?
__________________
Regards


Bill
Reply With Quote
  #6 (permalink)  
Old 06-30-2011, 11:31 PM
Active Member
 
Posts: 37
Default

Quote:
Originally Posted by phoenix View Post
Is this server on a public IP or on a LAN? When you say 'no connectivity', what exactly do you mean? Can you ping any outside addresses? Is your resolve.conf correct and does it point to a DNS server? Do you have a DNS server running on your Zimbra server?
this server is on a LAN - Public IP is the WAN side of our firewall,
it's doing NAT, and fowarding SMTP and HTTPS to the LAN IP of the ZCS
10.0.0.10

resolv.conf is correct, it has the ISP's DNS server info in it.

BIND is running on the ZCS, and as I understand the way it's supposed to work, it's just doing DNS for the company domain (companydomain.com)

on the zcs box, a dig of companydomain.com returns the proper IP information, with the zcs box as being the server queried.
dig companydomain.com mx returns proper information as well...

Now - are you all ready for this? I'll put it in my next post...
Reply With Quote
  #7 (permalink)  
Old 06-30-2011, 11:37 PM
Active Member
 
Posts: 37
Default

Ok, this is puzzling


I now can ping both by name and ip address on this box!

The only things that have been done is to restore the public DNS back to the original mail server, and firewall was returned to forwarding smtp to the original mail server, and no longer foward SMTP and HTTPS to the ZCS...

No changes made on the zcs box, as I've been typing replies for the last 10 minutes or so on this forum!

I don't think that changing DNS would keep the box from being able to resolve, or ping by ip...

The only firewall change was to no longer forward HTTPS and SMTP to the zcs' lan ip, and restored forwarding SMTP to the original mail server LAN ip



tomorrow, I'll investigate the firewall, but I'm not sure if that's the culprit.

so tired...
Reply With Quote
  #8 (permalink)  
Old 06-30-2011, 11:52 PM
Active Member
 
Posts: 37
Default

Ok, I lied, since I had connectivity, I tried to send a message from the zcs web interface to my gmail account. I got the following:

(i hope I got the attachment done correctly)
Attached Files
File Type: txt mailerror.txt (5.2 KB, 2 views)
Reply With Quote
  #9 (permalink)  
Old 07-01-2011, 12:13 AM
Zimbra Consultant & Moderator
 
Posts: 20,315
Default

[QUOTE=billinvegas;221203resolv.conf is correct, it has the ISP's DNS server info in it.[/QUOTE]That should contain the IP address of the DNS server on your Zimbra server.
__________________
Regards


Bill
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.