Outgoing emails not sending

started about 7 hours ago. when opened up the mail.log and syslog, they are being flooded.

Any help would be greatly appreciated:
dave

Sep 10 14:32:00 box postfix/smtp[2534]: Trusted TLS connection established to eur.olc.protection.outlook.com[52.101.68.9]:25: TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)
Sep 10 14:32:00 box postfix/smtp[2532]: SSL_connect:SSL negotiation finished successfully
Sep 10 14:32:00 box postfix/smtp[2532]: SSL_connect:SSL negotiation finished successfully
Sep 10 14:32:00 box postfix/smtp[2532]: save session smtp&hotmail.it&eur.olc.protection.outlook.com&52.101.73.25&&52B31262E225017CA6FB88BD1B2190A4658B1191963D8BA1C84D0A5BB6D5FDBE to smtp cache
Sep 10 14:32:00 box postfix/smtp[2545]: SSL_connect:SSL negotiation finished successfully
Sep 10 14:32:00 box postfix/smtp[2545]: SSL_connect:SSL negotiation finished successfully
Sep 10 14:32:00 box postfix/smtp[2545]: save session smtp&hotmail.de&eur.olc.protection.outlook.com&52.101.73.25&&B5E3E69E4F107F2864EF52314FAC0C714FF87C92CA5FE16A08D499F6F81183D2 to smtp cache
Sep 10 14:32:00 box postfix/tlsmgr[1412]: put smtp session id=smtp&hotmail.it&eur.olc.protection.outlook.com&52.101.73.25&&52B31262E225017CA6FB88BD1B2190A4658B1191963D8BA1C84D0A5BB6D5FDBE [data 2640 bytes]
Sep 10 14:32:00 box postfix/tlsmgr[1412]: write smtp TLS cache entry smtp&hotmail.it&eur.olc.protection.outlook.com&52.101.73.25&&52B31262E225017CA6FB88BD1B2190A4658B1191963D8BA1C84D0A5BB6D5FDBE: time=1757532720 [data 2640 bytes]
Sep 10 14:32:00 box postfix/smtp[2532]: SSL_connect:SSLv3/TLS read server session ticket
Sep 10 14:32:00 box postfix/tlsmgr[1412]: put smtp session id=smtp&hotmail.de&eur.olc.protection.outlook.com&52.101.73.25&&B5E3E69E4F107F2864EF52314FAC0C714FF87C92CA5FE16A08D499F6F81183D2 [data 2640 bytes]
Sep 10 14:32:00 box postfix/tlsmgr[1412]: write smtp TLS cache entry smtp&hotmail.de&eur.olc.protection.outlook.com&52.101.73.25&&B5E3E69E4F107F2864EF52314FAC0C714FF87C92CA5FE16A08D499F6F81183D2: time=1757532720 [data 2640 bytes]
Sep 10 14:32:00 box postfix/smtp[2545]: SSL_connect:SSLv3/TLS read server session ticket
Sep 10 14:32:00 box postfix/smtp[2588]: B5F7D4B310: to=mascali06@yahoo.de, relay=mx-eu.mail.am0.yahoodns.net[188.125.72.74]:25, delay=13022, delays=12991/29/1.8/0.11, dsn=4.7.0, status=deferred (host mx-eu.mail.am0.yahoodns.net[188.125.72.74] said: 421 4.7.0 [TSS04] Messages from 45.79.7.108 temporarily deferred due to unexpected volume or user complaints - 4.16.55.1; see https://postmaster.yahooinc.com/error-codes (in reply to MAIL FROM command))
Sep 10 14:32:00 box postfix/smtp[2468]: BA97A4C0F4: host mta5.am0.yahoodns.net[67.195.204.73] said: 421 4.7.0 [TSS04] Messages from 45.79.7.108 temporarily deferred due to unexpected volume or user complaints - 4.16.55.1; see https://postmaster.yahooinc.com/error-codes (in reply to MAIL FROM command)
Sep 10 14:32:00 box postfix/smtp[2468]: BA97A4C0F4: lost connection with mta5.am0.yahoodns.net[67.195.204.73] while sending RCPT TO
Sep 10 14:32:00 box postfix/smtp[2569]: setting up TLS connection to mta7.am0.yahoodns.net[67.195.204.79]:25
Sep 10 14:32:00 box postfix/smtp[2569]: mta7.am0.yahoodns.net[67.195.204.79]:25: TLS cipher list “aNULL:-aNULL:HIGH:MEDIUM:+RC4:@STRENGTH:!aNULL:!RC4”
Sep 10 14:32:00 box postfix/smtp[2569]: looking for session smtp&yahoo.com&mta7.am0.yahoodns.net&67.195.204.79&&E271825D410D9F4C8BFF567BABFF791CE491C1AA8E57F075D46BE3940B6A4A72 in smtp cache
Sep 10 14:32:00 box postfix/tlsmgr[1412]: lookup smtp session id=smtp&yahoo.com&mta7.am0.yahoodns.net&67.195.204.79&&E271825D410D9F4C8BFF567BABFF791CE491C1AA8E57F075D46BE3940B6A4A72
Sep 10 14:32:00 box postfix/smtp[2569]: SSL_connect:before SSL initialization
Sep 10 14:32:00 box postfix/smtp[2569]: SSL_connect:SSLv3/TLS write client hello
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:SSLv3/TLS write client hello
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:SSLv3/TLS read server hello
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:TLSv1.3 read encrypted extensions
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:SSLv3/TLS read server certificate request
Sep 10 14:32:00 box postfix/smtp[2578]: eur.olc.protection.outlook.com[52.101.73.25]:25: depth=2 verify=1 subject=/C=US/O=DigiCert Inc/OU=www.digicert.com/CN=DigiCert Global Root CA
Sep 10 14:32:00 box postfix/smtp[2578]: eur.olc.protection.outlook.com[52.101.73.25]:25: depth=1 verify=1 subject=/C=US/O=DigiCert Inc/CN=DigiCert Cloud Services CA-1
Sep 10 14:32:00 box postfix/smtp[2578]: eur.olc.protection.outlook.com[52.101.73.25]:25: depth=0 verify=1 subject=/C=US/ST=Washington/L=Redmond/O=Microsoft Corporation/CN=mail.protection.outlook.com
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:SSLv3/TLS read server certificate
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:TLSv1.3 read server certificate verify
Sep 10 14:32:00 box postfix/smtp[2587]: setting up TLS connection to mta6.am0.yahoodns.net[98.136.96.91]:25
Sep 10 14:32:00 box postfix/smtp[2587]: mta6.am0.yahoodns.net[98.136.96.91]:25: TLS cipher list “aNULL:-aNULL:HIGH:MEDIUM:+RC4:@STRENGTH:!aNULL:!RC4”
Sep 10 14:32:00 box postfix/smtp[2587]: looking for session smtp&yahoo.com&mta6.am0.yahoodns.net&98.136.96.91&&93E8A86A1935CBCAAAEC3BF4F674112C97506A3B809481B08B3414BE3D511367 in smtp cache
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:SSLv3/TLS read finished
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:SSLv3/TLS write client certificate
Sep 10 14:32:00 box postfix/smtp[2578]: SSL_connect:SSLv3/TLS write finished
Sep 10 14:32:00 box postfix/smtp[2578]: eur.olc.protection.outlook.com[52.101.73.25]:25: subject_CN=mail.protection.outlook.com, issuer_CN=DigiCert Cloud Services CA-1, fingerprint=A5:B8:C9:71:37:74:CD:A2:A2:08:75:C9:88:4E:11:1C, pkey_fingerprint=BE:93:12:CC:0E:6F:73:25:0D:12:91:A5:C8:C1:7C:E8
Sep 10 14:32:00 box postfix/smtp[2578]: Trusted TLS connection established to eur.olc.protection.outlook.com[52.101.73.25]:25: TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)
Sep 10 14:32:00 box postfix/tlsmgr[1412]: lookup smtp session id=smtp&yahoo.com&mta6.am0.yahoodns.net&98.136.96.91&&93E8A86A1935CBCAAAEC3BF4F674112C97506A3B809481B08B3414BE3D511367

Looks like Yahoo complains about your server sending too many messages.
Check mailq to see if there are many messages waiting to be send

If you say outgoing mails not sending, you mean any mail? Or only @yahoo mail addresses?

i have tried to gmail and hotmail and they are not being delivered. when i run sudo tail -f /var/log/mail.log, it is running continuously, same for syslog. I can only assume that something as infected the server and is trying to blast out emails. But I can’t seem to pinpoint what is causing this. any thoughts? Thanks, Dave

also, i ran mailq and found spam going out, but the sending email address does not exist on the server anymore as I deleted it. so how can it still be sending emails out?
thanks
dave

You could try postqueue -p to list the queue contents.

Then postsuper -d xxxx to delete a specific message xxxx, or -d ALL to clear the queues, or -d ALL qqqq to clear a specific queue.

The man page has details and options. And you might need to sudo.

1 Like

thank you. i cleared out the queue, almost 38k messages and seems to have cleared it up. thanks, Dave