Page 1 of 1
HETZNER blocks port 25 and 465
Posted: Wed Feb 07, 2024 12:35 pm
by webxtek
Good morning,
Today i was setting a new hetzner cloud account for a client, and I installed myvestacp fresh install, and everything was working, even receiving emails, but I can’t send them, later I discover they block for 1 month period or more those ports as we are new users, how am I suppposed to send emails? Is there anything I can do around this until they unlock those ports for me?
Re: HETZNER blocks port 25 and 465
Posted: Wed Feb 07, 2024 10:56 pm
by isscbta
Re: HETZNER blocks port 25 and 465
Posted: Thu Feb 08, 2024 12:31 am
by webxtek
Hi,
I already tried that solution and it wont work. I'm not sure if its a hetzner issue, i got other account with 3 years with couple servers running using Myvestacp and i never had any issues.
On this new account they already answered me telling i would need to wait 1 month and pay 1 invoice before i had port 25 and 465 unlocked, but they said port 587 was open. I already tried so many things.
/var/log/exim4/mainlog
Code: Select all
2024-02-07 23:25:40 exim 4.96 daemon started: pid=13336, -q30m, listening for SMTP on port 25 (IPv4) port 587 (IPv4) port 2525 (IPv4) port 12384 (IPv4) and for SMTPS on port 465 (IPv4)
2024-02-07 23:25:41 Start queue run: pid=13337
2024-02-07 23:26:44 H=localhost (server.mydomain.com) [127.0.0.1] Warning: Sender rate [limitlog]: log / email / [email protected] / 1.0 / 1h [limit=400]
2024-02-07 23:26:44 1rXrJU-0003Tv-1V <= [email protected] H=localhost (server.mydomain.com) [127.0.0.1] P=esmtpa A=dovecot_login:[email protected] S=662 [email protected]
2024-02-07 23:27:50 1rXnug-00049Q-0e H=gmail-smtp-in.l.google.com [74.125.71.27] Connection timed out
2024-02-07 23:28:54 1rXrJU-0003Tv-1V H=alt2.gmail-smtp-in.l.google.com [142.251.9.26] Connection timed out
2024-02-07 23:30:01 1rXnug-00049Q-0e H=alt1.gmail-smtp-in.l.google.com [142.250.153.27] Connection timed out
2024-02-07 23:30:21 no host name found for IP address 85.209.11.242
2024-02-07 23:30:22 TLS error on connection from (masscan) [85.209.11.242] (gnutls_handshake): The TLS connection was non-properly terminated.
2024-02-07 23:31:05 1rXrJU-0003Tv-1V H=alt3.gmail-smtp-in.l.google.com [142.250.150.27] Connection timed out
2024-02-07 23:32:12 1rXnug-00049Q-0e H=alt2.gmail-smtp-in.l.google.com [142.251.9.26] Connection timed out
2024-02-07 23:32:12 1rXnug-00049Q-0e == [email protected] R=dnslookup T=remote_smtp defer (110): Connection timed out
2024-02-07 23:32:12 1rXlVu-00093s-0o == [email protected] R=dnslookup T=remote_smtp defer (-54): retry time not reached for any host for 'mydomain2.com'
2024-02-07 23:33:16 1rXrJU-0003Tv-1V H=alt4.gmail-smtp-in.l.google.com [74.125.200.26] Connection timed out
2024-02-07 23:33:16 1rXrJU-0003Tv-1V == [email protected] R=dnslookup T=remote_smtp defer (110): Connection timed out
2024-02-07 23:34:23 1rXlrr-000Zzl-0t H=alt3.gmail-smtp-in.l.google.com [142.250.150.27] Connection timed out
2024-02-07 23:34:23 1rXlrr-000Zzl-0t == [email protected] R=dnslookup T=remote_smtp defer (110): Connection timed out
2024-02-07 23:34:23 1rXo9D-0000R4-2W == [email protected] R=dnslookup T=remote_smtp defer (-54): retry time not reached for any host for 'gmail.com'
2024-02-07 23:34:23 End queue run: pid=13337
i even raised the limit to 400 just to make sure it was not a rate limit.
Re: HETZNER blocks port 25 and 465
Posted: Thu Feb 08, 2024 1:25 pm
by webxtek
Good morning,
Hetzner did unlock the ports after i verified that i am old customer on another account, but now im facing another issues.
Now it is not sending or receiving emails at all.
Code: Select all
2024-02-08 12:22:21 H=localhost (server.domain1.com) [127.0.0.1] Warning: Sender rate [limitlog]: log / email / [email protected] / 1.0 / 1h [limit=40]
2024-02-08 12:22:21 1rY3Q4-0000mm-2E <= [email protected] H=localhost (server.domain1.com) [127.0.0.1] P=esmtpa A=dovecot_login:[email protected] S=603 [email protected]
2024-02-08 12:22:21 1rY3Q4-0000mm-2E ** [email protected] R=dnslookup T=remote_smtp H=mail.domain2.com [116.203.0.9] X=TLS1.3:ECDHE_SECP256R1__RSA_PSS_RSAE_SHA256__AES_256_GCM:256 CV=no: SMTP error from remote mail server after RCPT TO:<[email protected]>: 550 smtp auth requried
2024-02-08 12:22:21 1rY3Q5-0000mr-2g U=Debian-exim Warning: Sender rate [limitlog]: log / account / / 1.0 / 1h [limit=40]
2024-02-08 12:22:21 1rY3Q5-0000mr-2g <= <> R=1rY3Q4-0000mm-2E U=Debian-exim P=local S=2124
2024-02-08 12:22:21 1rY3Q4-0000mm-2E Completed
2024-02-08 12:22:21 1rY3Q5-0000mr-2g => user1 <[email protected]> R=localuser T=local_delivery
2024-02-08 12:22:22 1rY3Q5-0000mr-2g H=gmail-smtp-in.l.google.com [64.233.166.26] TLS error on connection (recv): The TLS connection was non-properly terminated.
2024-02-08 12:22:22 1rY3Q5-0000mr-2g => [email protected] <[email protected]> R=dnslookup T=remote_smtp H=gmail-smtp-in.l.google.com [64.233.166.26] X=TLS1.3:ECDHE_X25519__ECDSA_SECP256R1_SHA256__AES_256_GCM:256 CV=yes K C="250 2.0.0 OK l7-20020a5d5607000000b0033b3f5180c0si1679560wrv.525 - gsmtp"
2024-02-08 12:22:22 1rY3Q5-0000mr-2g Completed
550 smtp auth requried
any idea what it could be? thank you
Re: HETZNER blocks port 25 and 465
Posted: Thu Feb 08, 2024 7:50 pm
by webxtek
Hi everyone i just did another test, i just set up a fresh installation of myVestaCP on a Debian 12 server hosted with Hetzner. The hostname I used for the setup is server.mydomain.com. Initially, I created an email account
[email protected] and tested both sending and receiving emails. Everything worked perfectly at this stage.
However, after adding the domain mydomain.com to the web server and creating a new email account
[email protected], I encountered a problem. This new email account is unable to send any emails. Whenever I attempt to send an email, it bounces back with the following error messages:
550-Verification failed for <
[email protected]>
550-Unrouteable address
550 Sender verify failed
It seems like there's an issue with email verification or routing for the new domain. I've double-checked the DNS and MX records, and everything appears to be configured correctly.
Has anyone faced a similar issue or can offer any insights on what might be going wrong here? Any help or suggestions would be greatly appreciated.
Some tests dont even deliver to gmail at all, others i send from server 1 email to another server i own and i get "mail dlivery failed: returning message to sender" on both ends, with a 550 smtp auth requried...
Thanks in advance!
Re: HETZNER blocks port 25 and 465
Posted: Fri Feb 09, 2024 12:29 am
by webxtek
if i send emails from domain1.com that is hosted on server1 to domain2.com hosted on server2 they get delivered but i get emails back on both ends:

- Screenshot 2024-02-08 232808.png (127.22 KiB)
Re: HETZNER blocks port 25 and 465
Posted: Fri Feb 09, 2024 12:57 am
by webxtek
forward to option not working to, but if i use webmail to send the email it sends