<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Disable SMTP inspection via FMC in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3684778#M132802</link>
    <description>Go to FTD CLI and apply this command&lt;BR /&gt;&lt;BR /&gt;configure inspection esmtp disable&lt;BR /&gt;</description>
    <pubDate>Thu, 09 Aug 2018 09:01:23 GMT</pubDate>
    <dc:creator>Mohammed al Baqari</dc:creator>
    <dc:date>2018-08-09T09:01:23Z</dc:date>
    <item>
      <title>Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3684609#M132800</link>
      <description>&lt;P&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;I have an ASA-5508x, adminstered by a vFMC. Both are running 6.2.2.1. &lt;STRONG&gt;Note that this is FTD, not the older ASA software. &lt;/STRONG&gt;&lt;/FONT&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;I have a server behind the 5508, in a DMZ, that I want to have send email via an SMTP connection to Office 365. The problem I am seeing is with the FTD perfoming "SMTP inspection" mangling the SMTP session. This can be seen when I telnet to port25, and see a heap of asterixes&lt;/FONT&gt;. &amp;nbsp;ie &lt;FONT face="courier new,courier" size="2"&gt;220 ***************************************************************************************. &lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;This, unfortunatly, prevents my application from being able to start a TLS session, authenticate and relay. &amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;I am trying to figure out how to turn this off. I have checked the rule that is allowing traffic on port 25, configuring NO intrusion policy and NO file policy, but SMTP inspection still seems to be occuring.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;FONT face="courier new,courier" size="2"&gt;&lt;FONT face="arial,helvetica,sans-serif" size="3"&gt;How do&amp;nbsp;I disable this, and have SMTP traffic pass unmolested?&lt;BR /&gt;&lt;BR /&gt;It would be preferable if I can do this in a rule, or in some other way make it apply to just a single host, but if it has to be implemted globally that is workable. &lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 11:08:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3684609#M132800</guid>
      <dc:creator>itsupport</dc:creator>
      <dc:date>2019-03-12T11:08:21Z</dc:date>
    </item>
    <item>
      <title>Re: Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3684778#M132802</link>
      <description>Go to FTD CLI and apply this command&lt;BR /&gt;&lt;BR /&gt;configure inspection esmtp disable&lt;BR /&gt;</description>
      <pubDate>Thu, 09 Aug 2018 09:01:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3684778#M132802</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-08-09T09:01:23Z</dc:date>
    </item>
    <item>
      <title>Re: Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685486#M132804</link>
      <description>&lt;P&gt;Being an FMC, there is no CLI.&lt;/P&gt;</description>
      <pubDate>Fri, 10 Aug 2018 02:24:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685486#M132804</guid>
      <dc:creator>itsupport</dc:creator>
      <dc:date>2018-08-10T02:24:33Z</dc:date>
    </item>
    <item>
      <title>Re: Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685490#M132806</link>
      <description>I thought I said FTD not FMC. You need to put the command on FTD&lt;BR /&gt;</description>
      <pubDate>Fri, 10 Aug 2018 02:27:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685490#M132806</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-08-10T02:27:23Z</dc:date>
    </item>
    <item>
      <title>Re: Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685507#M132807</link>
      <description>&lt;P&gt;That&amp;nbsp;is not how the vFMC/FTD software works. Configuration&amp;nbsp;cannot be&amp;nbsp;done using a CLI.&lt;/P&gt;
&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/292493"&gt;@Mohammed al Baqari&lt;/a&gt;&amp;nbsp;wrote:&lt;BR /&gt;I thought I said FTD not FMC. You need to put the command on FTD&lt;BR /&gt;&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 10 Aug 2018 03:49:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685507#M132807</guid>
      <dc:creator>itsupport</dc:creator>
      <dc:date>2018-08-10T03:49:58Z</dc:date>
    </item>
    <item>
      <title>Re: Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685637#M132808</link>
      <description>You asked a question and I gave you an answer. I am not sure whats the&lt;BR /&gt;pointing of asking question and then negating the answer.&lt;BR /&gt;&lt;BR /&gt;This is the answer either take it or leave it. But you need to learn about&lt;BR /&gt;FTD before responding&lt;BR /&gt;</description>
      <pubDate>Fri, 10 Aug 2018 09:19:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685637#M132808</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-08-10T09:19:19Z</dc:date>
    </item>
    <item>
      <title>Re: Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685686#M132809</link>
      <description>&lt;P&gt;For MOST (but not all) features you are right.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;A few things - such as default inspections - are configurable locally via cli. That applies even when the FTD device is managed by FMC.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/firepower/command_ref/b_Command_Reference_for_Firepower_Threat_Defense/c_3.html#wp2136048707" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/security/firepower/command_ref/b_Command_Reference_for_Firepower_Threat_Defense/c_3.html#wp2136048707&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;As noted in the above reference, you should consider using a Flexconfig object in FMC to make this change persistent across policy deployments (if you have version 6.2.3 or later).&lt;/P&gt;</description>
      <pubDate>Fri, 10 Aug 2018 11:15:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3685686#M132809</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2018-08-10T11:15:03Z</dc:date>
    </item>
    <item>
      <title>Re: Disable SMTP inspection via FMC</title>
      <link>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3687709#M132810</link>
      <description>&lt;P&gt;OK for anyone else following, I eventually figured this out:&lt;BR /&gt;&lt;BR /&gt;1. Create a Flexconfig policy,&amp;nbsp;apply the &lt;STRONG&gt;Default_Inspection_Protocol_Disable, &lt;/STRONG&gt;System defined object.&lt;/P&gt;
&lt;P&gt;2. Go to Objects, Flexconfig, Text Object. Edit the &lt;STRONG&gt;disableInspecProtocolList&lt;/STRONG&gt; to include ESMPT. &lt;BR /&gt;&lt;BR /&gt;More than a little counterintuitive and convoluted, but works.&lt;/P&gt;</description>
      <pubDate>Tue, 14 Aug 2018 06:29:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/disable-smtp-inspection-via-fmc/m-p/3687709#M132810</guid>
      <dc:creator>itsupport</dc:creator>
      <dc:date>2018-08-14T06:29:25Z</dc:date>
    </item>
  </channel>
</rss>

