554 mcc-ibgw/mdc-ibgw cmsmtp Connection Rejected (Comcast Border Gateway)

SMTP error code 554: causes, retry logic, and the sender-side fix. mcc-ibgw/mdc-ibgw cmsmtp Connection Rejected (Comcast Border Gateway).
SMTPedia editorial team
Email infrastructure & deliverability editor
2 min read Jun 26, 2026 18 views
Code554
Bounce typeHard bounce
RetryableNo (until resolved)
Action neededContact Comcast postmaster
Typical error message
554 mcc-ibgw-4 cmsmtp Connection Rejected

What does 554 mcc-ibgw or mdc-ibgw cmsmtp Connection Rejected mean?

mcc-ibgw and mdc-ibgw are Comcast’s Memphis and DC inbound border gateways respectively. They sit at the network edge of the Comcast mail infrastructure and perform connection-level filtering before passing accepted sessions to the downstream impin proxies. A 554 Connection Rejected at this level means cmsmtp refused at the TCP or initial SMTP greeting stage, before EHLO or MAIL FROM. The cause is almost always IP-level: DNSBL match, internal block list entry, or PTR validation failure. The fix is identical to the broader cmsmtp ecosystem: clear public DNSBLs, fix authentication, contact Comcast postmaster.

Is this a soft or hard bounce?

⚠️
Hard bounce at connection layer

Connection-level rejection means cmsmtp made the decision before even reading your message. This pattern strongly indicates an IP reputation problem rather than a content or authentication issue.

Common causes

Public DNSBL match

Listings on Spamhaus, Abusix, or Barracuda propagate into cmsmtp. Clear those first.

⚠️
Reverse DNS validation failed

cmsmtp checks PTR at connection time. Missing or generic PTR triggers immediate rejection. See 554 bosimpinc Reverse DNS.

📣
Internal cmsmtp block list

Comcast may have added the IP based on prior complaints or spam trap hits.

How to fix it

1
Verify reverse DNS configuration

Run dig -x <ip> and ensure PTR resolves forward via dig <hostname>. Both must return the same IP.

2
Clear public DNSBL listings

Address any Spamhaus, Abusix, or Barracuda listings. cmsmtp typically respects upstream delistings within 24 to 48 hours.

3
Sign up for Comcast feedback loop

Enroll at feedback.comcast.net to track complaints.

4
Submit removal request

Use postmaster.comcast.net with remediation evidence.

Provider-specific notes

HostnameLocation
mcc-ibgw-1 through mcc-ibgw-8Memphis inbound border gateway cluster.
mdc-ibgw-1 through mdc-ibgw-8Washington DC inbound border gateway cluster.
Generic cmsmtp Connection RejectedConnection-layer rejection across any Comcast ingress cluster. Same root cause analysis applies.
Pre-bounce verification

Prevent the bounces that hurt your sender IP

Connection-layer Comcast rejections start with reputation decay driven by bounces. SMTPing catches invalid addresses before you send, keeping your IP off cmsmtp internal lists. 25 free checks daily, no card required.

Try SMTPing free →

About the Author

Alaa - SMTPedia author

Alaa · LinkedIn

Email infrastructure specialist with 8+ years of hands-on experience in SMTP, deliverability, and email verification. I’ve configured and troubleshot mail systems across Postfix, Exchange, and cloud relays, managed IP reputation and warmup campaigns, and built verification pipelines processing millions of addresses. My work spans DNS authentication (SPF, DKIM, DMARC, BIMI), bounce handling, blocklist monitoring, and compliance frameworks including CAN-SPAM and GDPR. I write every article on SMTPedia to give email professionals, developers, and marketers the accurate, RFC-grounded reference they need.


About SMTPedia

SMTPedia is an independent email industry reference covering SMTP, IMAP, POP3, email deliverability, marketing platforms, DNS authentication, and email verification. Every article is researched from official provider documentation, IETF RFCs, and industry best practices. Settings and configurations are verified quarterly.

We are cited as a source by ChatGPT, Microsoft Copilot, and thousands of email professionals worldwide. Learn more about our editorial process.