[TriLUG] Sendmail doesn't send mail on first attempt?...

Brian Henning brian at strutmasters.com
Tue Dec 12 16:17:20 EST 2006


iptables doesn't have per-user ability, does it?  I thought it only 
examined packet headers, which I didn't think had any info about local 
user in them..

So you're suggesting that the user that runs the sendmail queue 
processing, er, process, might not have permission within the walls of 
frontgate to create an outbound connection to the mail server?

[root at frontgate calls]# ps aux | grep sendmail
root      2636  0.0  0.3  8456 3156 ?        Ss   Jul21   0:02 sendmail: 
accepting connections
smmsp     2644  0.0  0.2  7600 2632 ?        Ss   Jul21   0:00 sendmail: 
Queue runner at 01:00:00 for /var/spool/clientmqueue
root      1161  0.0  0.0  4656  652 pts/6    S+   15:47   0:00 grep sendmail

Looks like the queue processing process runs as smmsp.  I can't access a 
shell from that account (which is sensible), so I can't try a telnet to 
port 25 as smmsp..  I can, however, telnet to strutmasters.net:25 from a 
standard unprivileged account.

Sorry for my ignorance, but I'm not sure where to look next.

~B


Daniel Sterling wrote:
> Brian Henning wrote:
>> Hi Gang,
>>   I'm seeing what to me is the weirdest thing with sendmail on one of my
>> hosts.  My firewall machine, to be exact.
> 
> Sounds like a firewall issue! ;)
> 
> Is the sendmail daemon denied access based on user? what's in your iptables?
> 
> -- Dan
> 

-- 
----------------
Brian A. Henning
strutmasters.com
336.597.2397x238
----------------



More information about the TriLUG mailing list