Zimbra offers Open Source email server software and shared calendar for Linux and the Mac
Go Back   Zimbra :: Forums > Zimbra Collaboration Suite > Installation

Welcome to the Zimbra :: Forums!
Welcome, if you would like to post a comment please register. We also encourage you to explore all things Zimbra with our team and members of the community.

Reply
 
LinkBack Thread Tools Search this Thread Display Modes
  #1 (permalink)  
Old 09-08-2008, 05:30 AM
New Member
 
Posts: 4
Default Re: Installing Zimbra behind Firewall

Hi,

I have a Mail server (Exchange) already configured behind the firewall with proper MX and A record and working fine,

A record email.example.com 10.10.10.1 (Public IP)
MX record example.com email.example.com (priority 0)

But i decided to migrate to zimbra without disturbing the present mail server,so i created one additional A and MX record in my DNS provider control panel with low priority (10) for new mail server mail1.example.com pointing to 10.10.10.2 (public IP)

These are the configuration:

Cent OS 5.1

Zimbra 5.08 (Opensource Edition)

my /etc/hosts file is

127.0.0.1 localhost
192.168.1.254 mail1.example.com mail1


My /etc/sysconfig/network

NETWORKING=yes
HOSTNAME=mail1.example.com


i forward port 25 from firewall to this machine (10.10.10.2:25 to 192.168.1.254:25)

Now the problem is when i try to install the Zimbra it says unable to resolve the MX record..this is the following Error


DNS ERROR resolving MX for mail1.example.com
It is suggested that the domain name have an MX record configured in DNS
Change domain name? [Yes]
Create Domain: [mail1.example.com] example.com
MX: mail1.example.com (10.10.10.2)
MX: email.example.com (10.10.10.1)

Interface: 192.168.1.254
Interface: 127.0.0.1


DNS ERROR - none of the MX records for example.com
resolve to this host


So please say your valuable solutions to Fix this issue...


Thanks.
Senthilkumar84_2000

Last edited by senthilkumar84_2000; 09-08-2008 at 05:34 AM.. Reason: Typing error
Reply With Quote
  #2 (permalink)  
Old 09-08-2008, 05:46 AM
Moderator
 
Posts: 7,928
Default

You will need to implement a Split DNS - Zimbra :: Wiki architecture.
__________________
Reply With Quote
  #3 (permalink)  
Old 09-08-2008, 06:31 AM
New Member
 
Posts: 4
Default

Thanks for your valuable solution..i will try that now, so if this works fine i will replace the existing one to zimbra, after that i need to remove the local DNS split? to act as a primary machine...Please suggest me how to do this?


Thanks,

Senthilkumar84_2000
Reply With Quote
  #4 (permalink)  
Old 09-08-2008, 07:37 AM
Moderator
 
Posts: 7,928
Default

You can leave the external DNS as is, but the reason for the Split DNS is so that a MX record for your ZCS installation is available on your internal LAN. You can install BIND on your ZCS server, and the only thing it really needs is the A and MX records (note: if you are not using your ISP to relay outbound email then it will need to be able to resolve external domains aswell).
__________________
Reply With Quote
  #5 (permalink)  
Old 09-10-2008, 06:24 PM
Active Member
 
Posts: 29
Default ?

I'm confused.. Why do we need this? Would it work if I ran a VPN? I don't understand why if everything forwards why it won't resolve them?
Reply With Quote
  #6 (permalink)  
Old 09-10-2008, 11:41 PM
Moderator
 
Posts: 7,928
Default

If you are behind a firewall on a private LAN IP then ZCS does still require the ability to resolve a MX and A record that matches the IP address of the host machine. If you went out to a external DNS then that would reply with the external IP and not the internal one. Whether ports are forwarded or not ZCS still needs name resolution to be in place.
__________________
Reply With Quote
Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes


Similar Threads

Why Join?

Registering let's you ask questions, makes it easier to search, displays any files attached to posts, and notifies you about replies.

blog.zimbra.com




 

SEO by vBSEO ©2011, Crawlability, Inc.