[Djigzo users] Setup help please...

Serao, Ron seraor at helenhayeshosp.org
Wed Aug 4 23:07:59 CEST 2010

Hello all,
I'm having a problem getting djigzo to work in my environment and I'm
hoping someone has some suggestions.  Here's my existing setup:

Exchange backend server .30 <------->exchange front end server
.29<---->spam gateway .7<---->internet
The spam gateway has a natted public address of .3

I want to insert djigzo between the spam gateway and the internet so
here's what I've done so far (without success I might add)

Exchange backend server .30 <------->exchange front end server
.29<---->spam gateway .7<---->Djigzo.74<---->internet
Public .3

Right now I am just trying to get mail routed through djigzo without
signing or encrypting.  
Here's my MTA config...

# postfix main config for djigzo

# these settings will be changed by the MTA admin page
djigzo_myhostname = mail.helenhayeshosp.org
djigzo_mydestination = 
djigzo_mynetworks =,,
djigzo_relayhost = 
djigzo_relayhost_mx_lookup = 
djigzo_relayhost_port = 25
djigzo_relay_domains = HelenHayes.Local, mail.helenhayeshosp.org
djigzo_before_filter_message_size_limit = 10240000
djigzo_after_filter_message_size_limit = 512000000
djigzo_mailbox_size_limit = 512000000
djigzo_smtp_helo_name = mail.helenhayeshosp.org
djigzo_relay_transport_host =
djigzo_relay_transport_host_mx_lookup = mx
djigzo_relay_transport_host_port = 25
djigzo_reject_unverified_recipient = reject
djigzo_unverified_recipient_reject_code = 450
djigzo_parent_domain_matches_subdomains = relay_domains

smtpd_banner = $myhostname ESMTP $mail_name (Djigzo)

biff = no

# appending .domain is the MUA's job.
append_dot_mydomain = no

# Uncomment the next line to generate "delayed mail" warnings
#delay_warning_time = 4h

myhostname = ${djigzo_myhostname}
mydestination = ${djigzo_mydestination}
mynetworks =, ${djigzo_mynetworks}
relayhost =
relay_domains = ${djigzo_relay_domains}
message_size_limit = ${djigzo_after_filter_message_size_limit}
mailbox_size_limit = ${djigzo_mailbox_size_limit}
smtp_helo_name =
relay_transport =
smtpd_recipient_restrictions = permit_mynetworks,
reject_unauth_destination ${djigzo_reject_unverified_recipient?,
unverified_recipient_reject_code =
parent_domain_matches_subdomains =

alias_maps = hash:/etc/aliases
alias_database = hash:/etc/aliases

recipient_delimiter = +

smtpd_authorized_xforward_hosts =

content_filter = djigzo:

#smtp_tls_security_level = may 
#smtp_sasl_auth_enable = yes
#smtp_sasl_password_maps = hash:/etc/postfix/smtp_client_passwd
#smtp_sasl_type = cyrus
#smtp_tls_CApath = /etc/postfix/certs/
#smtp_sasl_security_options =

When I try to send mail from an outside domain, say for example gmail,
to an internal address, I get an NDR with the following error:
"Google tried to deliver your message, but it was rejected by the
recipient domain. We recommend contacting the other email provider for
further information about the cause of this error. The error that the
other server returned was: 554 554 5.7.1 <xxxx at xxxx.xx>: Relay access
denied (state 14)."

Not sure where I've gone wrong but I'm certain I have.

Any help would be appreciated.


