Hestia querying spamhaus by default?

Hey team Hestia,

I’ve got a problem sending email from a specific (none hestia) domain to an email address that is on my hestia server.

The bounceback looks like a normal “your ip is on a blocklist” email but after checking I think this is something different.

The bounce back error message is;

> [<[email protected]>](mailto:[email protected]): host mail.domain.co.uk[45.32.178.28] said: 550-Rejected because 185.52.242.15 is in a black list at zen.spamhaus.org 550 Error: open resolver; https://check.spamhaus.org/returnc/pub/104.238.171.171/ (in reply to RCPT TO command)

That seems to indicate that my server rejected because the senders IP is block listed but if you follow the link then that indicates that the problem is with the receiving email server.

So, a couple of questions

  1. does hestia use spamhaus.org by default
  2. are we doing it wrong and does something need updating
  3. can I turn it off without causing lots of other issues

Thanks in advance for any help anyone is able to provide.

Spamhaus has not allowed queries from public DNS resolvers for some time now since it makes it impossible for them to track excessive usage.

You will need to either switch to a different DNS resolver on your HestiaCP server, obtain a Spamhaus datafeed, or disable the Spamhaus DNSbl on your HestiaCP server.

You can search this forum for detailed instructions. It has been discussed repeatedly for years now and there is not shortage of existing topics that already contain everything you will need to know in great detail.

Sincere apoliges @linkp

I thought I had searched the forum for spamhaus but clearly I didn’t because I just tried again and now see lots of results (as you say…)

For the record (and anyone else seeing this). In the short term I have commented out the second line of /etc/exim4/dnsbl.conf and restarted exim4, I can confirm the problem email has now sent.

I don’t actually know where to go and change my DNS servers (I thought it would be in /etc/resolv.conf but apparently not) so I will work that out and confirm when I have tested.

Check out; Spamhaus error: Rejected because [ip] is in black list at zen.spamhaus.org

Follow instructions 1-6

1 Like