New users email is not working in external domains

Hi,

I am facing strange problem in Exchange 2010 related to newly created users Email ID. All old users can send or receive emails everywhere without any problem but recently created users can send emails without any problem but the recipients are not receiving their emails.. it is happening since last 3 4 days and if i use hotmail or yahoo to send email to new users, i am receiving NDR report which is mentioned below in yahoo email case:

Sorry, we were unable to deliver your message to the following address.

<abc@test.com>:
Remote host said:
550 5.7.1 Unable to deliver to <abc@test.com>
[RCPT_TO]

--- Below this line is a copy of the message.

Received: from [127.0.0.1] by nm46.bullet.mail.ne1.yahoo.com with NNFMP; 26 Aug 2015 13:28:15 -0000
Received: from [98.138.226.180] by nm46.bullet.mail.ne1.yahoo.com with NNFMP; 26 Aug 2015 13:25:21 -0000
Received: from [98.138.88.233] by tm15.bullet.mail.ne1.yahoo.com with NNFMP; 26 Aug 2015 13:25:21 -0000
Received: from [127.0.0.1] by omp1033.mail.ne1.yahoo.com with NNFMP; 26 Aug 2015 13:25:21 -0000
X-Yahoo-Newman-Property: ymail-4
X-Yahoo-Newman-Id: 544764.2396.bm@omp1033.mail.ne1.yahoo.com
X-YMail-OSG: gOE7wK4VM1mfMAWqfloL1w1Btr6N3d0V54UKwkOuOHHh5n..tp3uyUpoDR0XpLR
i8i7yTc6UiT9WSn8XCaPABhIKWFYdKEtRK.VmhW4QHSVz79j42qEj_T990AkWD6A6eTd4AxCmXgj
SAhfGpUK1hFo9VgCjQ4e2.gAD.fkd4lkKSAY9rh1fqZKMnoadEk16NHGZQ6YWS85cDnx7YqKnzdL
d4ccceyIF1Ud6F4dIimbjJNnJ8oTSS2GgOCnfzqJr44EG8V17Gm.LEMn0k.tuPjdMSIadF7d_P.j
kQ3msZhP6Rjjo7yHGLTh8_8NhrLMmVT1MuPVAzTgWUVAmHrRDEm1OygCQpfVpHswvl1Z47CNk6Tn
FPhldoVWBDi_OXvRdiFk02tAyHhsiAyG.FlTOZEMvLB46VaeCSCe15IXytKjmBpxpzn7eiJcCDoZ
cqpDvxL1LIkBUp1ni9UqgKOTzcx2E3HRWgvk3hiBORfnBW_fFYxk6DG7w5u9unOGdT9ddax1VMjY
qiQO.lu7es9Sy_Q--

Kindly do reply if anyone knows about the problem. Thanks.

Osama Aftab.

August 27th, 2015 6:41am

Hi,

Can you please confirm if for these new users, the email domain has been has a valid MX record to send/receive emails. Also, check if you have added the domain to the authoritative domain list for your organization.

Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 8:21am

Thankf for your reply somnath...

Can you guide me how i can verify both things mentioned in your answer as i am new to exchange and i have not enough idea about exchange. Thanks. 

August 27th, 2015 8:31am

Hi Usama,

Please go the website "http://mxtoolbox.com/" and enter your mail domain name to check whether the domain has a valid MX and is pointed towards your environment perfectly. Also, you can check your edge transport server or any smart host server if they are pointing perfectly towards your environment if everything is configured correctly to receive emails.

Lastly, check if the domain is configured as an accepted domain in your organization in the tab: Organization Configuration > HUB Transport > Accepted Domains.

It should be an authoritative domain.

Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 10:39am

Hello Usama;

Make sure that you don't restrict these new users to receive mails from external users, on the other hand i need to understand what you mean that the recipients are not receiving their emails while you said that they are can send emails without any problems.

To Check users message delivery restrictions

Regarding the MX record:

you can check it by many ways, you can check it through website like www.MXtoolBox.com or from CMD as the below screen, I've already checked it for your domain TEST.com and it has an MX records.

From my side I've tried to send a test message to abc@test.com , but received NDR referred that this user is not existing, so make sure these users have mailboxes enabled.

Finally: Try to use the following in troubleshooting the problem:

1.Exchange Best Practices Analyzer.

2.Microsoft Remote Connectivity Analyzer. 

August 27th, 2015 10:41am

Thanks for kind reply.. i checked everything in mxtoolbox.com and our domain is has a valid MX. all old users can send or receive emails from external domains only 3 new users has problem.. 

i also found accepted domains option in exchange and yes domain is configured already there and also authoritative domain. 2 domain names are mentioned in accepted domain. 1 is true with .com and other is with .loc with false status. 

Let me know if you any other thing. Thanks.

Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 10:49am

Hi Usama,

Do you have any transport rule configured for net sending/receiving emails for the specific users. Also, as suggested by Mahmoud.Hanafi, please check if you have set any user level restriction for receiving and sending emails to external domains. 

August 27th, 2015 10:56am

Hi Usama;

As i mentioned above are you checked if there're any restriction in receiving regarding to those 3 users?

Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 10:59am

Dear Mahmoud,

Thanks for your reply.

i check new users message delivery restrictions already and found same thing as mentioned in your image. i mean, if new user is trying to send email for example to hotmail or yahoo, they can send it but it is not reaching to hotmail address and no NDR is coming in their inbox. on other hand if i try to send email from yahoo or hotmail to these new email addresses i am getting NDR as i mentioned above in my first message. hope so the point is clear to you now. more than 100 other users are sending and receiving emails from external domains and working fine.. 

for MX Record, how i can send you my domain name in private message? i used test as an example, our domain name is different. 

waiting for your reply. thanks.

August 27th, 2015 11:00am

Hi Somnath,

No rule has been defined in transport rules section for any user.  i created 1 new test user before 5 minutes in exchange and facing same problem with new user.. it is strange issue that everything is fine except for new users.... and nothing is showing in event viewer as well..

Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 11:05am

Good, then you can check your exchange system Queue, and give me the last error message.

 

You can send me on this address mahmoud.hanafi@outlook.com

August 27th, 2015 11:09am

Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 11:19am

Check that on all your HUB nodes, while you try to send message to external users
August 27th, 2015 11:31am

Hello Usama;

Would you please check if you have anti-spam that my inspect these users email traffic or not, on the other hand can you please make sure that those 3 users on the same DB with the old users that can sends and receives or not, if not, then try to move them to be on the same old users DB?

Waiting your feed

Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 12:08pm

Hi Mahmoud,

Yes under Organization configuration-- Hub Transport some Anti Spam options are enabled. yes these 3 users are under same DB. i checked this already.  

August 27th, 2015 12:21pm

Hello Usama; Would you please disable the antispam for test, then back it enabled again.
Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 12:25pm

ok let me do that and i will come back to you... Thanks.
August 27th, 2015 12:26pm

Nothing happened... still getting NDR in hotmail ID :(
Free Windows Admin Tool Kit Click here and download it now
August 27th, 2015 12:31pm

Dear Usama;

Would you please check with the Microsoft Exchange Troubleshooting Assistant.

After Checking for update go to welcome screen.

Share the result with us.

August 27th, 2015 1:40pm

Hi,

According to the error message, it seems that user does not existing or mailbox is full of the recipient.
Please check the recipient status by ExRCA with "Inbound SMTP E-Mail".

Free Windows Admin Tool Kit Click here and download it now
August 29th, 2015 3:57am

Hi Allen,

Thanks for your reply. i create the user by myself, it is showing in exchange and internal domain email is also working for that user. when i am creating any new user now in exchange server, external domain emails are not working for all new email addresses but for old email addresses everything is smooth and working fine. what do you mean by that mailbox is full of the recipient? i didn't get your point.... 

i checked recipient status in ExRCA and attached is the result for 1 user. when i check my email status and some other old email addresses, everything was successful with this message and green tick for all email addresses "Connectivity Test Successful".

Please do help me if you can trace problem as i am still finding a solution for this problem..

Waiting for your reply. Thanks.

August 29th, 2015 11:23am

Hello Usama,

Do you have an external spam service that receives and sends messages for your organization?  If not, are there any other email gateway devices that sit between your internal Exchange servers and the internet?

Richard Burrs

Sr. Messaging Engineer

Free Windows Admin Tool Kit Click here and download it now
August 29th, 2015 12:59pm

Hi Burrs,

Thanks for your reply.

Yes we have SonicWall Email Security 300 between internet and Exchange server... According to my knowledge we haven't any spam service for our organization... 

August 30th, 2015 2:19am

Hi Osama;

I found that you're using the following address (ion.softrivahost.com) as a mail gateway, could you please contact with them to know if there're any kind of restrictions on your mail traffic or not, on the other hand if you don't have any relation with this address, then you should to contact with your ISP because they're (ion.softrivahost.com) using the same IP address that you're using with your MX record.

I think this is the problem in your c

Free Windows Admin Tool Kit Click here and download it now
August 30th, 2015 3:23am

Hi Mahmoud,

I will inform you after contacting to softrivahost. i did one thing today that i remove Email Security IP from Send Connectors ---> Network tab and now i am able to send emails from new accounts and also from old accounts but still i can't receive emails in new accounts... You have any idea how i can adjust receive connectors to allow new users at least to start using email without Email Security firewall settings.. Kindly reply me. Thanks.

August 30th, 2015 7:29am

Hi Osama:

In the following article, the same problem but with old exchange version (2003), regarding to bypass the firewall in receiving, that will impacted your environment by threats, that's the way you can publish your mail system and every message must come through it, but you can disable the mail traffic and DNS inspection on your firewall, on the other hand you can check the firewall logs related with your mail traffic to know what's the rule drooped these messages.

Free Windows Admin Tool Kit Click here and download it now
August 30th, 2015 8:07am

Hi Mahmoud,

Thanks for your reply and support. problem is solved and it was in sonicwall email security. i just overwrite all configuration of firewall and restart it after that everything is smooth now without removing firewall IP from send connectors as well.

August 31st, 2015 3:28am

Hi Osama;

Thanks God, it's good news i'm very happy to hear that.

Free Windows Admin Tool Kit Click here and download it now
August 31st, 2015 3:34am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics