 rtfm8
join:2005-07-09 Washington, DC
·Verizon Online DSL
·Atlantech Online, ..
·AT&T DSL Service
| Has COVAD just started Port 25 blocking?
Suddenly I can't get outgoing Port 25 connectivity.
I got no notice or warning on this.
And no, I'm not a spammer, and have no Windoze boxes to be turned into Zombies, etc....
It appears large parts of their backend are down tonight, so when I try and reach a human [alas, now in the Philippines] I just get told "call some other time..." |
|
  NetFixer Freedom is NOT Free Premium join:2004-06-24 Murfreesboro, TN
·Vonage
·AT&T Southeast
·Cingular Wireless
·AT&T CallVantage
1 edit | The telnet sessions shown below (as well as my sendmail server logs) would seem to indicate that Covad is not blocking port 25 sessions universally.
Perhaps since your ISP seems to be ATT WorldNet, AT&T is responsible for blocking your port 25 sessions. I do know that my (formerly BellSouth) AT&T DSL service provided on an AT&T DSLAM blocks port 25 to all but their own SMTP servers. Perhaps this practice is becoming more universal for all AT&T DSL service. I would suggest contacting AT&T about this matter.
-- We can never have enough of nature. We need to witness our own limits transgressed, and some life pasturing freely where we never wander. Test your firewall. |
|
  DC DSL Stays crunchy even in milk Premium join:2000-07-30 Washington, DC
·Covad Communications
·Verizon Online DSL
| reply to rtfm8 No problems getting in or out on 25 at any of my clients using Covad. Like NetFixer said, it's probably your ISP interfering. Can you RDP into a system that is physically on Covad's wire and test from there? -- There is no giant fur-bearing trout. |
|
 rtfm8
join:2005-07-09 Washington, DC | The account I'm now talking about is not the ATT-packaged one I worked on last week. This is a covad labeled and billed account. The issue started yesterday afternoon. |
|
  Doctor Olds I Need A Remedy For What's Ailing Me. Premium,VIP join:2001-04-19 1970 442 W30 clubs:
| reply to rtfm8 said by rtfm8 :Suddenly I can't get outgoing Port 25 connectivity. That would be a question to ask your ISP since they determine what features that you have available and whether or not you have filtered outbound/inbound ports. Covad is not your ISP, AT&T WorldNet is.
This appears to be the Forum below.
»AT&T DSL Service
said by rtfm8 :I got no notice or warning on this. Did you check the AT&T WorldNet TOS and AUP pages? You are responsible to read them and they state that is where all changes will be published.
said by rtfm8 :And no, I'm not a spammer, and have no Windoze boxes to be turned into Zombies, etc.... And it is not a factor if you are or if you are not. They rarely block one person, they change the Border/Gateway Routers to drop your outbound port 25 requests allowing you only access to the WorldNet SMTP servers on the outbound direction. You simply change your eMail clients to the AT&T WorldNet SMTP servers and are back in business. If you are running your own SMTP locally, then you set that up to smart host into the WorldNet SMTP servers and you are done.
Regards,
Doctor Olds -- Whats the point of owning a supercar if you cant scare yourself stupid from time to time? |
|
  Doctor Olds I Need A Remedy For What's Ailing Me. Premium,VIP join:2001-04-19 1970 442 W30 clubs:
1 edit | reply to rtfm8 said by rtfm8 :The account I'm now talking about is not the ATT-packaged one I worked on last week. This is a covad labeled and billed account. The issue started yesterday afternoon. So you are not talking about your personal AT&T account? Do you not think that is important information that you should have initially disclosed?
What is the current rDNS on the account you are working on? Is this a Covad Business or Residential Account and are you sure it is not a resellers Account or another ISP like Mindspring/Earthlink or other ISP? Check the settings in the user's Router to verify they are using a "Username@Covad.Net" Login. -- Whats the point of owning a supercar if you cant scare yourself stupid from time to time? |
|
 rtfm8
join:2005-07-09 Washington, DC 1 edit | reply to Doctor Olds Not sure I ever said the ATT account was mine; it's not. It's one I got working....
Again, this is a covad.net account; with bills from covad, an email address at covad [if I wanted such..] and so forth.
ATT has zero involvement AFAIK. |
|
  Doctor Olds I Need A Remedy For What's Ailing Me. Premium,VIP join:2001-04-19 1970 442 W30 clubs:
| said by rtfm8 :Not sure I ever said the ATT account was mine; it's not. It's one I got working.... Again, this is a covad.net account; with bills from covad, an email address at covad [if I wanted such..] and so forth. ATT has zero involvement AFAIK. How do we determine *any* of this info based on what you ~initially~ posted?
You did not say, "I'm working on a Covad Line for someone with Covad service". You posted in first person like this was your line and we can only go by your listed ISP then.
Plus why would you say "I got no notice or warning on this." if this was not your line?? Normally you would say I checked with the owner of the service and they tell me they have not gotten any change notices or seen any TOS/AUP changes on their Covad Account.

See how you make it very difficult for others to even begin to help you? -- Whats the point of owning a supercar if you cant scare yourself stupid from time to time? |
|
  DrStrange Technically feasible Premium join:2001-07-23 West Hartford, CT | reply to rtfm8 No port 25 block here, using Stephouse Networks via Covad. |
|
 rtfm8
join:2005-07-09 Washington, DC
·Verizon Online DSL
·Atlantech Online, ..
·AT&T DSL Service
1 edit | reply to Doctor Olds Funny you should mention that tag under my login. I looked for 30 minutes yesterday trying to grok where it is [un]set. It's not in Site Preferences or Account Settings.
I apologize that it confused some folks. This is a covad.net account; my current IP is in the 67.103.25.xx block.
Here's two examples of the blocking, and one from a shell host in NYC to show how it should look.
As for the T&C's, here's a quote from the site:
quote: Although Covad's servers will allow SMTP Relay, it is not advised. A valid covad.net email account must be set up in the SMTP setup of the mail client. Because covad.net email accounts are consumer accounts and are designed for general home consumer use, many customers using SMTP relay for their business needs may violate Covad's Acceptable Usage Policy, which we advise you to review. Covad does not block port 25 in through the network. It is advised that instead of using SMTP relay, customers use their provider's SMTP server for sending third party hosted mail.
From what you are collectively saying; I'm the only one seeing this issue, so I guess I'll see what the covad direct group says.
Thanks for the input. |
|
  Doctor Olds I Need A Remedy For What's Ailing Me. Premium,VIP join:2001-04-19 1970 442 W30 clubs:
1 edit | said by rtfm8 :Funny you should mention that tag under my login. I looked for 30 minutes yesterday trying to grok where it is [un]set. It's not in Site Preferences or Account Settings. You can't "unset it", you have to review your current ISP/Provider if you are no longer using AT&T and that new ISP/Provider review will replace it. -- Whats the point of owning a supercar if you cant scare yourself stupid from time to time? |
|
 rtfm8
join:2005-07-09 Washington, DC
·Verizon Online DSL
·Atlantech Online, ..
·AT&T DSL Service
| said by Doctor Olds :You can't "unset it", you have to review your current ISP if you are no longer using AT&T and that will replace it. Well, that explains where it came from. I guess I should have ignored the system nag messages urging me to post such. |
|
  Doctor Olds I Need A Remedy For What's Ailing Me. Premium,VIP join:2001-04-19 1970 442 W30 clubs:
| said by rtfm8 :Well, that explains where it came from. I guess I should have ignored the system nag messages urging me to post such. Well if Covad is your current ISP, why would you not want to tell people your experience with them (good or bad)?  -- Whats the point of owning a supercar if you cant scare yourself stupid from time to time? |
|
  NetFixer Freedom is NOT Free Premium join:2004-06-24 Murfreesboro, TN
·Vonage
·AT&T Southeast
·Cingular Wireless
·AT&T CallVantage
2 edits | reply to rtfm8 It is interesting that your failed port 25 telnet sessions report "Unable to connect to remote host: No route to host". When I try to do a port 25 telnet session from my Covad circuit to a BellSouth/AT&T mail server that implements port 25 blocking to off-net access, the reply I get is "connect to address 207.115.11.17: Connection timed out" from Linux, and "Could not open connection to the host, on port 25: Connect failed" on Windows.
The Linux console session below shows that the host "mail.bellsouth.net" is indeed blocked for port 25, but it can be connected using port 110, and also pinged.
When I try the same connection sequences from my BellSouth/AT&T circuit (which does have a port 25 off-net block) to "mail.panix.com" and "dc-sage.org", I get the "Connection timed out" and "port 25: Connect failed" messages for port 25 attempts, not a "No route to host" reply. I had no problems establishing port 25 or port 110 sessions to either of those hosts using my Covad circuit.
Can you reach "mail.panix.com" and/or "dc-sage.org" using a port 110 telnet session, and can you ping them?
-- We can never have enough of nature. We need to witness our own limits transgressed, and some life pasturing freely where we never wander. Test your firewall. |
|
 rtfm8
join:2005-07-09 Washington, DC
·Verizon Online DSL
·Atlantech Online, ..
·AT&T DSL Service
1 edit | said by NetFixer :Can you reach "mail.panix.com" and/or "dc-sage.org" using a port 110 telnet session, and can you ping them? $ telnet mail.panix.com 587 Trying 166.84.1.89... Connected to mailbackend.panix.com. Escape character is '^]'. 220 mailbackend.panix.com ESMTP Postfix ^] telnet> Connection closed.
$ telnet mail.panix.com 80 Trying 166.84.1.89... Connected to mailbackend.panix.com. Escape character is '^]'. ^] telnet> Connection closed.
$ telnet mail.panix.com 110 Trying 166.84.1.89... Connected to mailbackend.panix.com. Escape character is '^]'. +OK Dovecot ready. ^] telnet> Connection closed.
$ telnet mail.panix.com 443 Trying 166.84.1.89... Connected to mailbackend.panix.com. Escape character is '^]'. ^] telnet>
[dc-sage listens on fewer ports, but other than that...]
And yes, they ping as well.
[ps: looks like I'm stuck with the ATT badge...] |
|
  DrStrange Technically feasible Premium join:2001-07-23 West Hartford, CT
·Stephouse Networks
·magicjack.com
·EarthLink
| reply to rtfm8 --- looking up host mail.panix.com... --- connecting to (mail.panix.com), port 25... --- connected
220 mailbackend.panix.com ESMTP Postfix
---------------------------------------------
--- looking up host mail.panix.com... --- connecting to (mail.panix.com), port 110... --- connected
+OK Dovecot ready. ----------------------------------------------
--- looking up host dc-sage.org... --- connecting to (dc-sage.org), port 110... --- error: connection was rejected
----------------------------------------------
--- 10/05/08 12:16:49 Eastern Daylight Time --- pinging dc-sage.org, please wait... --- sending to dc-sage.org [71.246.230.123],
reply from [71.246.230.123] 42 ms reply from [71.246.230.123] 39 ms reply from [71.246.230.123] 40 ms reply from [71.246.230.123] 39 ms reply from [71.246.230.123] 38 ms
--- ping statistics for dc-sage.org 5 packets transmitted, 5 received round-trip time (ms) min 38, avg 39, max 42
I can connect to mail.panix.com, but not dc-sage.org [rejected on 110 and 23, doesn't look like the mailserver]. |
|
 rtfm8
join:2005-07-09 Washington, DC | dc-sage is not a general purpose mail server, so that's to be expected. It's a mailing list box. |
|
  Doctor Olds I Need A Remedy For What's Ailing Me. Premium,VIP join:2001-04-19 1970 442 W30 clubs:
1 edit | reply to rtfm8 said by rtfm8 :[ps: looks like I'm stuck with the ATT badge...] Empty your browser cache or change the main browser settings/preferences to get new pages everytime versus every session or other less frequent settings. It has changed for me.

Forum for »Atlantech Online, Inc.
-- Whats the point of owning a supercar if you cant scare yourself stupid from time to time? |
|