[exim] The mystery of the changing domain

Top Page
Delete this message
Reply to this message
Author: Johann Spies
Date:  
To: exim-users
Subject: [exim] The mystery of the changing domain
Our domain is sun.ac.za

We relay email for a few other domains including prg.wcape.school.za.
A user with the address estelle@??? complains that email
sent to her from outside does not reach her.

An example was an email she sent to herself from a yahoo account - at
test message CC'd to me.

When I opened the email, the headers looked like this:

==================
Received: from mail2bb.sun.ac.za ([146.232.128.59] helo=mail2.sun.ac.za)
        by burger.sun.ac.za with esmtp (Exim 4.63)
        (envelope-from <melissa_langley555@???>)
        id 1HAQjb-0001Jv-QY
        for js@???; Fri, 26 Jan 2007 15:03:15 +0200
Received: from web28014.mail.ukl.yahoo.com ([217.146.182.119])
        by mail2.sun.ac.za with smtp (Exim 4.50)
        id 1HAQjX-0001xY-U0
        for jspies@???; Fri, 26 Jan 2007 15:03:15 +0200
Received: (qmail 90987 invoked by uid 60001); 26 Jan 2007 13:02:41 -0000
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws;
  s=s1024; d=yahoo.co.uk;


h=Message-ID:X-YMail-OSG:Received:Date:From:Subject:To:Cc:MIME-Version:Content-Type:Content-Transfer-Encoding;

b=vUvde5kgRWt7EjdG5++kwRhuiIEl0wRQkCcHAcBPz2/Tf0S8Mkw3j+geB0toPVcMD7guWQbjok6udfzYehkKNCPC1urNbaA+1mAP+3/JmQuNTppdi7dvU7OC2MrfENa72s+g11gad5SawQeoaQMBoEg1aUWqzg3x+lhs1P0Z4xc= ;
Message-ID: <20070126130241.90985.qmail@???>
X-YMail-OSG: oVEf_94VM1mVYf6NJ3YKiLAwh.rEfaDCrxmJ5vtOu1olfesJov33uHLXMpMTcTixtQ--
Received: from [196.208.103.85] by web28014.mail.ukl.yahoo.com via HTTP; Fri, 26 Jan 2007 13:02:41
GMT
Date: Fri, 26 Jan 2007 13:02:41 +0000 (GMT)
From: Melissa Langley <melissa_langley555@???>
Subject: Test Message for Estelle
To: estelle@???
Cc: jspies@???
==============================

However in the mainlog on mail2.sun.ac.za I found this:

=================

2007-01-26 15:03:15 1HAQjX-0001xZ-UO <= melissa_langley555@??? H=web28014.mail.ukl.yahoo.com [217.146.182.119] P=smtp S=2902 id=20070126130241.90985.qmail@???
2007-01-26 15:03:15 1HAQjX-0001xZ-UO => estelle@??? <estelle@???> R=relayrouter T=remote_smtp H=stbbh.stb.sun.ac.za [146.232.20.30]
2007-01-26 15:03:15 1HAQjX-0001xZ-UO Completed

2007-01-26 15:03:15 1HAQjX-0001xY-U0 <= melissa_langley555@??? H=web28014.mail.ukl.yahoo.com [217.146.182.119] P=smtp S=2901 id=20070126130241.90985.qmail@???
2007-01-26 15:03:15 1HAQjX-0001xY-U0 => js@??? <jspies@???> R=dnslookup_relay_to_domains T=remote_smtp H=burger.sun.ac.za [146.232.128.30]
2007-01-26 15:03:15 1HAQjX-0001xY-U0 Completed

=================

I then ran 'exim4 -d-all+acl+rewrite+route -bhc 217.146.182.119' using
"mail from: melissa_langley555@???" and "rcpt to:
estelle@???" and the output showed that it would be
deliverd to prg.wcape.schoo.za as it is supposed to be.

Now my question. If the log shows that the message was addressed to
estelle@??? <estelle@???> while the "To:"-field
in the message showed estelle@???, how could this
happen?

If it is a configuration error on our server, how can I determine where
what went wrong? Several -bh tests revealed nothing.

Regards
Johann
-- 
Johann Spies          Telefoon: 021-808 4036
Informasietegnologie, Universiteit van Stellenbosch


     "Wash me thoroughly from mine iniquity, and cleanse me 
      from my sin. For I acknowledge my transgressions; and 
      my sin is ever before me. Against thee, thee only, 
      have I sinned, and done this evil in thy sight..."
                                   Psalms 51:2-4