On 3 Oct 2012, at 16:21, Ralf Hildebrandt wrote:
DNS is definitely failing for dfleur.com, as the hit on the SA rule
"NO_DNS_FOR_FROM" indicates and as confirmed by a manual query:
~$ dig dfleur.com mx
; <<>> DiG 9.8.1-P1 <<>> dfleur.com mx
;; global options: +cmd
;; Got answer:
;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 47102
;; flags: qr rd ra; QUERY: 1, ANSWER: 2, AUTHORITY: 0, ADDITIONAL: 2
;; QUESTION SECTION:
;dfleur.com.INMX
;; ANSWER SECTION:
dfleur.com.3566INMX10 mail.dfleur.com.
dfleur.com.3566INMX20 ny.dfleur.com.
;; ADDITIONAL SECTION:
mail.dfleur.com.3566INA184.82.205.246
ny.dfleur.com.3566INA209.144.26.231
;; Query time: 4 msec
;; SERVER: 127.0.1.1#53(127.0.1.1)
;; WHEN: Wed Oct 3 22:21:22 2012
;; MSG SIZE rcvd: 100
Please read the first message in the thread to understand how testing
against your local DNS resolver is not relevant.