HETZNER blocks port 25 and 465

Post Reply
User avatar
webxtek
Posts: 51
Joined: Wed Nov 18, 2020 7:43 pm

Good morning,
Today i was setting a new hetzner cloud account for a client, and I installed myvestacp fresh install, and everything was working, even receiving emails, but I can’t send them, later I discover they block for 1 month period or more those ports as we are new users, how am I suppposed to send emails? Is there anything I can do around this until they unlock those ports for me?
User avatar
isscbta
Team Member
Posts: 130
Joined: Mon Jul 19, 2021 1:41 am
Has thanked: 16 times
Been thanked: 3 times

User avatar
webxtek
Posts: 51
Joined: Wed Nov 18, 2020 7:43 pm

Hi,
I already tried that solution and it wont work. I'm not sure if its a hetzner issue, i got other account with 3 years with couple servers running using Myvestacp and i never had any issues.
On this new account they already answered me telling i would need to wait 1 month and pay 1 invoice before i had port 25 and 465 unlocked, but they said port 587 was open. I already tried so many things.

/var/log/exim4/mainlog

Code: Select all

2024-02-07 23:25:40 exim 4.96 daemon started: pid=13336, -q30m, listening for SMTP on port 25 (IPv4) port 587 (IPv4) port 2525 (IPv4) port 12384 (IPv4) and for SMTPS on port 465 (IPv4)
2024-02-07 23:25:41 Start queue run: pid=13337
2024-02-07 23:26:44 H=localhost (server.mydomain.com) [127.0.0.1] Warning: Sender rate [limitlog]: log / email / [email protected] / 1.0 / 1h [limit=400]
2024-02-07 23:26:44 1rXrJU-0003Tv-1V <= [email protected] H=localhost (server.mydomain.com) [127.0.0.1] P=esmtpa A=dovecot_login:[email protected] S=662 [email protected]
2024-02-07 23:27:50 1rXnug-00049Q-0e H=gmail-smtp-in.l.google.com [74.125.71.27] Connection timed out
2024-02-07 23:28:54 1rXrJU-0003Tv-1V H=alt2.gmail-smtp-in.l.google.com [142.251.9.26] Connection timed out
2024-02-07 23:30:01 1rXnug-00049Q-0e H=alt1.gmail-smtp-in.l.google.com [142.250.153.27] Connection timed out
2024-02-07 23:30:21 no host name found for IP address 85.209.11.242
2024-02-07 23:30:22 TLS error on connection from (masscan) [85.209.11.242] (gnutls_handshake): The TLS connection was non-properly terminated.
2024-02-07 23:31:05 1rXrJU-0003Tv-1V H=alt3.gmail-smtp-in.l.google.com [142.250.150.27] Connection timed out
2024-02-07 23:32:12 1rXnug-00049Q-0e H=alt2.gmail-smtp-in.l.google.com [142.251.9.26] Connection timed out
2024-02-07 23:32:12 1rXnug-00049Q-0e == [email protected] R=dnslookup T=remote_smtp defer (110): Connection timed out
2024-02-07 23:32:12 1rXlVu-00093s-0o == [email protected] R=dnslookup T=remote_smtp defer (-54): retry time not reached for any host for 'mydomain2.com'
2024-02-07 23:33:16 1rXrJU-0003Tv-1V H=alt4.gmail-smtp-in.l.google.com [74.125.200.26] Connection timed out
2024-02-07 23:33:16 1rXrJU-0003Tv-1V == [email protected] R=dnslookup T=remote_smtp defer (110): Connection timed out
2024-02-07 23:34:23 1rXlrr-000Zzl-0t H=alt3.gmail-smtp-in.l.google.com [142.250.150.27] Connection timed out
2024-02-07 23:34:23 1rXlrr-000Zzl-0t == [email protected] R=dnslookup T=remote_smtp defer (110): Connection timed out
2024-02-07 23:34:23 1rXo9D-0000R4-2W == [email protected] R=dnslookup T=remote_smtp defer (-54): retry time not reached for any host for 'gmail.com'
2024-02-07 23:34:23 End queue run: pid=13337
i even raised the limit to 400 just to make sure it was not a rate limit.
User avatar
webxtek
Posts: 51
Joined: Wed Nov 18, 2020 7:43 pm

Good morning,
Hetzner did unlock the ports after i verified that i am old customer on another account, but now im facing another issues.
Now it is not sending or receiving emails at all.

Code: Select all

2024-02-08 12:22:21 H=localhost (server.domain1.com) [127.0.0.1] Warning: Sender rate [limitlog]: log / email / [email protected] / 1.0 / 1h [limit=40]
2024-02-08 12:22:21 1rY3Q4-0000mm-2E <= [email protected] H=localhost (server.domain1.com) [127.0.0.1] P=esmtpa A=dovecot_login:[email protected] S=603 [email protected]
2024-02-08 12:22:21 1rY3Q4-0000mm-2E ** [email protected] R=dnslookup T=remote_smtp H=mail.domain2.com [116.203.0.9] X=TLS1.3:ECDHE_SECP256R1__RSA_PSS_RSAE_SHA256__AES_256_GCM:256 CV=no: SMTP error from remote mail server after RCPT TO:<[email protected]>: 550 smtp auth requried
2024-02-08 12:22:21 1rY3Q5-0000mr-2g U=Debian-exim Warning: Sender rate [limitlog]: log / account /  / 1.0 / 1h [limit=40]
2024-02-08 12:22:21 1rY3Q5-0000mr-2g <= <> R=1rY3Q4-0000mm-2E U=Debian-exim P=local S=2124
2024-02-08 12:22:21 1rY3Q4-0000mm-2E Completed
2024-02-08 12:22:21 1rY3Q5-0000mr-2g => user1 <[email protected]> R=localuser T=local_delivery
2024-02-08 12:22:22 1rY3Q5-0000mr-2g H=gmail-smtp-in.l.google.com [64.233.166.26] TLS error on connection (recv): The TLS connection was non-properly terminated.
2024-02-08 12:22:22 1rY3Q5-0000mr-2g => [email protected] <[email protected]> R=dnslookup T=remote_smtp H=gmail-smtp-in.l.google.com [64.233.166.26] X=TLS1.3:ECDHE_X25519__ECDSA_SECP256R1_SHA256__AES_256_GCM:256 CV=yes K C="250 2.0.0 OK l7-20020a5d5607000000b0033b3f5180c0si1679560wrv.525 - gsmtp"
2024-02-08 12:22:22 1rY3Q5-0000mr-2g Completed
550 smtp auth requried
any idea what it could be? thank you
User avatar
webxtek
Posts: 51
Joined: Wed Nov 18, 2020 7:43 pm

Hi everyone i just did another test, i just set up a fresh installation of myVestaCP on a Debian 12 server hosted with Hetzner. The hostname I used for the setup is server.mydomain.com. Initially, I created an email account [email protected] and tested both sending and receiving emails. Everything worked perfectly at this stage.

However, after adding the domain mydomain.com to the web server and creating a new email account [email protected], I encountered a problem. This new email account is unable to send any emails. Whenever I attempt to send an email, it bounces back with the following error messages:
550-Verification failed for <[email protected]>
550-Unrouteable address
550 Sender verify failed
It seems like there's an issue with email verification or routing for the new domain. I've double-checked the DNS and MX records, and everything appears to be configured correctly.

Has anyone faced a similar issue or can offer any insights on what might be going wrong here? Any help or suggestions would be greatly appreciated.

Some tests dont even deliver to gmail at all, others i send from server 1 email to another server i own and i get "mail dlivery failed: returning message to sender" on both ends, with a 550 smtp auth requried...

Thanks in advance!
User avatar
webxtek
Posts: 51
Joined: Wed Nov 18, 2020 7:43 pm

if i send emails from domain1.com that is hosted on server1 to domain2.com hosted on server2 they get delivered but i get emails back on both ends:
Screenshot 2024-02-08 232808.png
Screenshot 2024-02-08 232808.png (127.22 KiB)
User avatar
webxtek
Posts: 51
Joined: Wed Nov 18, 2020 7:43 pm

forward to option not working to, but if i use webmail to send the email it sends
Post Reply