LED 451 4.4.0 421 service not available (connection to blocklisted host ( - DNSBL)) Exchange 2016

Benard Mwanza 996 Reputation points

My exchange server 2016 is unable to deliver emails externally to internet.
Outbound mails are stuck in queue with the same error message displayed in exchange queue toolbox.

I tried the following fix without success:
Restart the server
Enabled TLS 1.2 both server and client registry keys for the server, restarted afterwards
Created a new send connector and assigned valid third party ssl certificate, restarted transport service
Tried to restart IIS.
All exchange server services are running
My DNS resolution internally is working properly
Third party certificate is bound to IIS & SMTP services.
Windows firewall is disabled.
No third party anti virus is configured in the server.
There no a single error event logged in win event logs under applications

Telnet diagnostics is off somewhere.
When i telnet localhost or the server its own IP address on port 25(telnet localhost 25 or telnet 192.168.x.x 25) I'm able to get a ESMTP banner, however when i try to telnet google smtp on port 25 or office 365 smtp(telnet smtp.gmail.com 25 or telnet smtp.office365.com 25), i get an error, that Connection to host lost. with additional message ....,421 service not available (connection to blocklisted host ( - DNSBL)),

The smtp send connector keeps logging the same error repetitively.
This is the error. What is wrong?

`#Software: Microsoft Exchange Server


Log-type: SMTP Send Protocol Log

Date: 2022-04-05T11:01:57.626Z

Fields: date-time,connector-id,session-id,sequence-number,local-endpoint,remote-endpoint,event,data,context

2022-04-05T11:01:48.383Z,Internet,08DA16F263D3E30F,0,,192.168.x.x:25,,,attempting to connect
,,"Failed to connect. Winsock error code: 10060, Win32 error code: 10060, Error Message: A connection attempt failed because the connected party did not properly respond after a period of time, or established connection failed because connected host has failed to respond 192.168.x.x:25"
2022-04-05T11:02:12.560Z,Internet,08DA16F263D3E311,0,,,,,attempting to connect
,,attempting to connect
2022-04-05T11:02:14.483Z,Internet,08DA16F263D3E312,2,192.168.x.x:8612,,<,421 service not available (connection to blocklisted host ( - DNSBL)),`

Exchange Server Management
Exchange Server Management
Exchange Server: A family of Microsoft client/server messaging and collaboration software.Management: The act or process of organizing, handling, directing or controlling something.
7,440 questions
Microsoft Exchange Hybrid Management
Microsoft Exchange Hybrid Management
Microsoft Exchange: Microsoft messaging and collaboration software.Hybrid Management: Organizing, handling, directing or controlling hybrid deployments.
1,960 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. Kael Yao-MSFT 37,586 Reputation points Microsoft Vendor

    Hi @Benard Mwanza

    This error message indicates your public ip address may be on some blacklists so the target servers refuse to connect.
    You may use some online tools for example mxtoolbox.com to have a check.
    (Please Note: Since the web site is not hosted by Microsoft, the link may change without notice. Microsoft does not guarantee the accuracy of this information.)

    If the answer is helpful, please click "Accept Answer" and kindly upvote it. If you have extra questions about this answer, please click "Comment".
    Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.