Problem with mail using cloudflare dns and Oracle Cloud Ubuntu

Please assist. I’m using cloudflare dns and my server is an Oracle Cloud Ubuntu instance… My website is reachable but my mail doesn’t work… I’ve tried syncing the dns settings on cloudflare and cyberpanel but still doesn’t work…

Problems:

  1. Can’t login using the credentials on a mail client, and if using Rainloop,
  2. can’t send mail, nor receive mail…

And
3) there’s no SENT or OUTBOX folders on my rainloop … My cloudflare dns records are attached below.




Please show //email/testTo: results

CheckTLS Confidence Factor for “Info@buyitbest.co.za”: 108 of 114 (94%, 124 max)

MX Server Pref Answer Connect HELO TLS Cert Secure From MTASTS DANE Score
_dc-mx.ab9ccac02153.buyitbest.co.za
[129.151.163.228:25] 0 OK
(240ms) OK
(957ms) OK
(240ms) OK
(240ms) FAIL OK
(2,408ms) OK
(241ms) not tested not tested 108.00
Average 100% 100% 100% 100% 0% 100% 100% 108

Scan down DETAIL output below for info on errors and warnings.

Checking Info@buyitbest.co.za from www12-azure.checktls.com(V03.66.05) at 2022-05-23T01:25:02Z:

seconds lookup result
[000.000] DNS LOOKUPS
[000.001] SEARCHLIST 104.131.108.216,134.209.169.224,1.1.1.1,8.8.8.8,67.207.67.3
[000.018] MX (0) _dc-mx.ab9ccac02153.buyitbest.co.za
[000.035] MX:A–>_dc-mx.ab9ccac02153.buyitbest.co.za 129.151.163.228
seconds test stage and result
[000.000] Trying TLS on _dc-mx.ab9ccac02153.buyitbest.co.za[129.151.163.228:25] (0)
[000.240] Server answered
[001.197] <‑‑ 220 buyitbest.co.za ESMTP Postfix
[001.197] We are allowed to connect
[001.197] ‑‑> EHLO www12-azure.checktls.com
[001.436] <‑‑ 250-buyitbest.co.za

250-PIPELINING
250-SIZE 30720000
250-ETRN
250-STARTTLS
250-AUTH PLAIN
250-AUTH=PLAIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING|
|[001.437]||We can use this server|
|[001.437]||TLS is an option on this server|
|[001.437]|‑‑>|STARTTLS|
|[001.676]|<‑‑|220 2.0.0 Ready to start TLS|
|[001.677]||STARTTLS command works on this server|
|[001.930]||Connection converted to SSL|
|||SSLVersion in use: TLSv1_3|
|||Cipher in use: TLS_AES_256_GCM_SHA384|
|||Perfect Forward Secrecy: yes|
|||Session Algorithm in use: Curve X25519 DHE(253 bits)|
|||Certificate #1 of 1 (sent by MX):expressionless:
|||Cert VALIDATION ERROR(S): self signed certificate|
|||So email is encrypted but the recipient domain is not verified|
|||Cert Hostname DOES NOT VERIFY (_dc-mx.ab9ccac02153.buyitbest.co.za != buyitbest.co.za)|
|||So email is encrypted but the host is not verified|
|||Not Valid Before: May 23 01:24:48 2022 GMT|
|||Not Valid After: May 20 01:24:48 2032 GMT|
|||subject: /C=US/ST=Denial/L=Springfield/O=Dis/CN=buyitbest.co.za|
|||issuer: /C=US/ST=Denial/L=Springfield/O=Dis/CN=buyitbest.co.za|
|[001.933]|>|EHLO www12-azure.checktls.com|
|[002.408]|<
|250-buyitbest.co.za
250-PIPELINING
250-SIZE 30720000
250-ETRN
250-AUTH PLAIN
250-AUTH=PLAIN
250-ENHANCEDSTATUSCODES
250-8BITMIME
250-DSN
250 CHUNKING|
|[002.408]||TLS successfully started on this server|
|[002.409]|>|MAIL FROM:test@checktls.com|
|[002.649]|<
|250 2.1.0 Ok|
|[002.650]||Sender is OK|
|[002.650]|>|QUIT|
|[002.893]|<
|221 2.0.0 Bye|

Make sure you don’t use proxy on cloudflare DNS for mail server (gray cloud) and try issue SSL for mail domain again.

Are you on Oracle paid subscribtion? If on free tier then emails are blocked by oracle.