<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic  The mail server ip address in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/mr-michael-mutua/m-p/2690623#M194453</link>
    <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The mail server ip address is 172.15.0.14 and we also have a mail marshal on ip 172.15.0.17 that basically checks external emails before they get to our domain.&lt;/P&gt;&lt;P&gt;We can not receive external emails (yahoomail and gmail) in to our domain.&lt;/P&gt;&lt;P&gt;I have also realised that port 25 is closed on checking at ping.eu&lt;/P&gt;</description>
    <pubDate>Tue, 23 Jun 2015 12:09:08 GMT</pubDate>
    <dc:creator>Mykheymutua</dc:creator>
    <dc:date>2015-06-23T12:09:08Z</dc:date>
    <item>
      <title>Mr. Michael Mutua</title>
      <link>https://community.cisco.com/t5/network-security/mr-michael-mutua/m-p/2690621#M194451</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi Support,&lt;/P&gt;&lt;P&gt;I have a problem that i am trying to get a solution for.&lt;/P&gt;&lt;P&gt;In our domain, we can not receive EXTERNAL EMAILS except for the few individuals whose mail accounts have been hosted in the cloud.&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Below are my ASA Configs&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Password: ************&lt;BR /&gt;xxxxxx#&lt;BR /&gt;xxxxxx#&lt;BR /&gt;xxxxxx# sh ver&lt;/P&gt;&lt;P&gt;Cisco Adaptive Security Appliance Software Version 8.3(1)&lt;BR /&gt;Device Manager Version 6.3(1)&lt;/P&gt;&lt;P&gt;Compiled on Thu 04-Mar-10 16:56 by builders&lt;BR /&gt;System image file is "disk0:/asa831-k8.bin"&lt;BR /&gt;Config file at boot was "startup-config"&lt;/P&gt;&lt;P&gt;xxxxxx up 3 days 2 hours&lt;/P&gt;&lt;P&gt;Hardware:&amp;nbsp;&amp;nbsp; ASA5520, 2048 MB RAM, CPU Pentium 4 Celeron 2000 MHz&lt;BR /&gt;Internal ATA Compact Flash, 256MB&lt;BR /&gt;BIOS Flash M50FW016 @ 0xfff00000, 2048KB&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;xxxxxx#&lt;BR /&gt;xxxxxx#&lt;BR /&gt;xxxxxx# sh run&lt;BR /&gt;: Saved&lt;BR /&gt;:&lt;BR /&gt;ASA Version 8.3(1)&lt;BR /&gt;!&lt;BR /&gt;hostname xxxxxx&lt;BR /&gt;domain-name media.com&lt;BR /&gt;enable password nM0K/bGRZ0p.5osG encrypted&lt;BR /&gt;passwd 2KFQnbNIdI.2KYOU encrypted&lt;BR /&gt;names&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/0&lt;BR /&gt;&amp;nbsp;nameif External_Public&lt;BR /&gt;&amp;nbsp;security-level 0&lt;BR /&gt;&amp;nbsp;ip address 41.186.24.226 255.255.255.248&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/1&lt;BR /&gt;&amp;nbsp;nameif Internal_Private&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;ip address 172.15.0.3 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/2&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface GigabitEthernet0/3&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;no nameif&lt;BR /&gt;&amp;nbsp;no security-level&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;!&lt;BR /&gt;interface Management0/0&lt;BR /&gt;&amp;nbsp;shutdown&lt;BR /&gt;&amp;nbsp;nameif management&lt;BR /&gt;&amp;nbsp;security-level 100&lt;BR /&gt;&amp;nbsp;no ip address&lt;BR /&gt;&amp;nbsp;management-only&lt;BR /&gt;!&lt;BR /&gt;banner exec This is mulala ASA Firewall.Please do not Log if if you are not Authorised&lt;BR /&gt;banner login This is mulala ASA Firewall.Please do not Log if if you are not Authorised&lt;BR /&gt;ftp mode passive&lt;BR /&gt;clock timezone EEST 2&lt;BR /&gt;clock summer-time EEDT recurring last Fri Apr 0:00 last Fri Sep 0:00&lt;BR /&gt;dns domain-lookup External_Public&lt;BR /&gt;dns domain-lookup Internal_Private&lt;BR /&gt;dns server-group DefaultDNS&lt;BR /&gt;&amp;nbsp;name-server 196.44.250.215&lt;BR /&gt;&amp;nbsp;name-server 196.44.250.214&lt;BR /&gt;&amp;nbsp;domain-name media.com&lt;BR /&gt;object network Internal_Private&lt;BR /&gt;&amp;nbsp;subnet 172.15.0.0 255.255.255.0&lt;BR /&gt;&amp;nbsp;description Inside&lt;BR /&gt;object service owa&lt;BR /&gt;&amp;nbsp;service tcp source eq www destination eq 9090&lt;BR /&gt;&amp;nbsp;description webmail&lt;BR /&gt;object service http_gen&lt;BR /&gt;&amp;nbsp;service tcp destination eq 9090&lt;BR /&gt;&amp;nbsp;description Generic HTTP Port&lt;BR /&gt;object service imap_sec&lt;BR /&gt;&amp;nbsp;service tcp destination eq 993&lt;BR /&gt;&amp;nbsp;description Secure IMAP&lt;BR /&gt;object service smtp_sub&lt;BR /&gt;&amp;nbsp;service tcp destination eq 587&lt;BR /&gt;&amp;nbsp;description SMTP Email Submission&lt;BR /&gt;object service smtps&lt;BR /&gt;&amp;nbsp;service tcp destination eq 465&lt;BR /&gt;&amp;nbsp;description Secure SMTP Port&lt;BR /&gt;object service 3389&lt;BR /&gt;&amp;nbsp;service tcp destination eq 3389&lt;BR /&gt;&amp;nbsp;description rdp&lt;BR /&gt;object network ASA&lt;BR /&gt;&amp;nbsp;host 172.15.0.3&lt;BR /&gt;&amp;nbsp;description Firewall&lt;BR /&gt;object network svr-mulalahq-mm-1&lt;BR /&gt;&amp;nbsp;host 172.15.0.17&lt;BR /&gt;&amp;nbsp;description Exchange Server&lt;BR /&gt;object network Internal_Network&lt;BR /&gt;&amp;nbsp;subnet 172.15.0.0 255.255.255.0&lt;BR /&gt;object network mailserverHTTP&lt;BR /&gt;object network 41.186.24.227&lt;BR /&gt;&amp;nbsp;host 41.186.24.227&lt;BR /&gt;object network NETWORK_OBJ_172.15.0.80_28&lt;BR /&gt;&amp;nbsp;subnet 172.15.0.80 255.255.255.240&lt;BR /&gt;object network comrex&lt;BR /&gt;&amp;nbsp;host 172.15.0.5&lt;BR /&gt;&amp;nbsp;description comrex ip&lt;BR /&gt;object network svr-mulalahq-mm-1&lt;BR /&gt;&amp;nbsp;host 172.15.0.15&lt;BR /&gt;object-group service DM_INLINE_SERVICE_1&lt;BR /&gt;&amp;nbsp;service-object tcp-udp destination eq domain&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq www&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq https&lt;BR /&gt;&amp;nbsp;service-object udp destination eq domain&lt;BR /&gt;&amp;nbsp;service-object udp destination eq www&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq smtp&lt;BR /&gt;object-group service DM_INLINE_SERVICE_2&lt;BR /&gt;&amp;nbsp;service-object icmp&lt;BR /&gt;&amp;nbsp;service-object icmp6&lt;BR /&gt;&amp;nbsp;service-object icmp echo&lt;BR /&gt;&amp;nbsp;service-object icmp echo-reply&lt;BR /&gt;&amp;nbsp;service-object icmp traceroute&lt;BR /&gt;&amp;nbsp;service-object tcp-udp destination eq echo&lt;BR /&gt;&amp;nbsp;service-object udp destination eq echo&lt;BR /&gt;object-group service DM_INLINE_SERVICE_3&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq ftp&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq ssh&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq telnet&lt;BR /&gt;&amp;nbsp;service-object udp destination eq tftp&lt;BR /&gt;object-group service DM_INLINE_SERVICE_4&lt;BR /&gt;&amp;nbsp;service-object icmp&lt;BR /&gt;&amp;nbsp;service-object icmp echo&lt;BR /&gt;&amp;nbsp;service-object icmp echo-reply&lt;BR /&gt;object-group service MailserverPorts&lt;BR /&gt;&amp;nbsp;description Mailserver ports&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq imap4&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq pop2&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq pop3&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq smtp&lt;BR /&gt;&amp;nbsp;service-object object http_gen&lt;BR /&gt;&amp;nbsp;service-object object imap_sec&lt;BR /&gt;&amp;nbsp;service-object object smtp_sub&lt;BR /&gt;&amp;nbsp;service-object object smtps&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq https&lt;BR /&gt;&amp;nbsp;service-object object 3389&lt;BR /&gt;object-group service DM_INLINE_SERVICE_7&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq domain&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq smtp&lt;BR /&gt;&amp;nbsp;service-object udp destination eq domain&lt;BR /&gt;object-group service DM_INLINE_SERVICE_5&lt;BR /&gt;&amp;nbsp;service-object tcp&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq ftp&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq www&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq https&lt;BR /&gt;&amp;nbsp;service-object tcp-udp destination eq www&lt;BR /&gt;&amp;nbsp;service-object icmp&lt;BR /&gt;&amp;nbsp;service-object icmp echo&lt;BR /&gt;&amp;nbsp;service-object icmp echo-reply&lt;BR /&gt;object-group service DM_INLINE_SERVICE_6&lt;BR /&gt;&amp;nbsp;service-object tcp&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq pop2&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq pop3&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq smtp&lt;BR /&gt;object-group service DM_INLINE_SERVICE_8&lt;BR /&gt;&amp;nbsp;service-object icmp&lt;BR /&gt;&amp;nbsp;service-object icmp echo&lt;BR /&gt;&amp;nbsp;service-object icmp echo-reply&lt;BR /&gt;&amp;nbsp;service-object tcp-udp destination eq echo&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq domain&lt;BR /&gt;&amp;nbsp;service-object udp destination eq domain&lt;BR /&gt;object-group service DM_INLINE_SERVICE_9&lt;BR /&gt;&amp;nbsp;service-object icmp&lt;BR /&gt;&amp;nbsp;service-object icmp echo-reply&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq echo&lt;BR /&gt;&amp;nbsp;service-object udp destination eq echo&lt;BR /&gt;object-group service DM_INLINE_TCP_1 tcp&lt;BR /&gt;&amp;nbsp;port-object eq https&lt;BR /&gt;&amp;nbsp;port-object eq smtp&lt;BR /&gt;&amp;nbsp;port-object eq www&lt;BR /&gt;object-group protocol DM_INLINE_PROTOCOL_2&lt;BR /&gt;&amp;nbsp;protocol-object ip&lt;BR /&gt;&amp;nbsp;protocol-object udp&lt;BR /&gt;&amp;nbsp;protocol-object tcp&lt;BR /&gt;object-group service DM_INLINE_SERVICE_10&lt;BR /&gt;&amp;nbsp;service-object icmp&lt;BR /&gt;&amp;nbsp;service-object tcp-udp destination eq domain&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq domain&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq echo&lt;BR /&gt;&amp;nbsp;service-object udp destination eq domain&lt;BR /&gt;object-group service DM_INLINE_SERVICE_11&lt;BR /&gt;&amp;nbsp;service-object icmp&lt;BR /&gt;&amp;nbsp;service-object icmp echo-reply&lt;BR /&gt;&amp;nbsp;service-object tcp destination eq echo&lt;BR /&gt;&amp;nbsp;service-object udp destination eq echo&lt;BR /&gt;access-list inside_access_in remark Allow SMTP Traffic (Outbound)&lt;BR /&gt;access-list inside_access_in extended permit tcp object Internal_Network object ASA eq smtp&lt;BR /&gt;access-list inside_access_in remark Allow HTTP Access&lt;BR /&gt;access-list inside_access_in remark Allow Ping to Internet&lt;BR /&gt;access-list inside_access_in extended permit object-group DM_INLINE_SERVICE_2 172.15.0.0 255.255.255.0 any&lt;BR /&gt;access-list inside_access_in remark Allow Management Access&lt;BR /&gt;access-list inside_access_in extended permit object-group DM_INLINE_SERVICE_3 172.15.0.0 255.255.255.0 any&lt;BR /&gt;access-list inside_access_in extended permit object-group DM_INLINE_SERVICE_1 172.15.0.0 255.255.255.0 41.186.25.0 255.255.255.248&lt;BR /&gt;access-list inside_access_in extended permit icmp any any&lt;BR /&gt;access-list inside_access_in extended permit icmp any any echo-reply&lt;BR /&gt;access-list outside_access_in remark Allow ICMP Reply&lt;BR /&gt;access-list outside_access_in remark Allow ICMP Reply&lt;BR /&gt;access-list outside_access_in extended permit tcp interface External_Public object ASA eq https&lt;BR /&gt;access-list outside_access_in extended permit object-group DM_INLINE_SERVICE_4 any object Internal_Private&lt;BR /&gt;access-list External_Public_access_in extended permit tcp any object svr-mulalahq-mm-1 object-group DM_INLINE_TCP_1&lt;BR /&gt;access-list External_Public_access_in extended permit object-group DM_INLINE_SERVICE_9 any object Internal_Network&lt;BR /&gt;access-list External_Public_access_in extended permit object-group DM_INLINE_SERVICE_11 any object comrex&lt;BR /&gt;access-list Internal_Private_access_out extended permit object-group DM_INLINE_SERVICE_7 object svr-mulalahq-mm-1 any&lt;BR /&gt;access-list Internal_Private_access_out extended permit object-group DM_INLINE_SERVICE_5 object Internal_Network any&lt;BR /&gt;access-list Internal_Private_access_out extended permit object-group DM_INLINE_SERVICE_8 object Internal_Network any&lt;BR /&gt;access-list Internal_Private_access_out extended permit object-group DM_INLINE_SERVICE_10 any object comrex&lt;BR /&gt;pager lines 24&lt;BR /&gt;logging enable&lt;BR /&gt;logging asdm informational&lt;BR /&gt;mtu External_Public 1500&lt;BR /&gt;mtu Internal_Private 1500&lt;BR /&gt;mtu management 1500&lt;BR /&gt;ip local pool ipsec-pool 172.15.0.80-172.15.0.90 mask 255.255.255.0&lt;BR /&gt;no failover&lt;BR /&gt;icmp unreachable rate-limit 1 burst-size 1&lt;BR /&gt;no asdm history enable&lt;BR /&gt;arp timeout 14400&lt;BR /&gt;nat (External_Public,External_Public) source dynamic any interface destination static svr-mulalahq-mm-1 svr-mulalahq-mm-1 service owa owa&lt;BR /&gt;nat (Internal_Private,External_Public) source static any any destination static NETWORK_OBJ_172.15.0.80_28 NETWORK_OBJ_172.15.0.80_28&lt;BR /&gt;nat (External_Public,Internal_Private) source static any any destination static comrex comrex&lt;BR /&gt;!&lt;BR /&gt;object network svr-mulalahq-mm-1&lt;BR /&gt;&amp;nbsp;nat (Internal_Private,any) static 41.186.24.227 dns&lt;BR /&gt;object network comrex&lt;BR /&gt;&amp;nbsp;nat (Internal_Private,External_Public) static 41.186.24.224 service udp 9000 9000&lt;BR /&gt;!&lt;BR /&gt;nat (Internal_Private,External_Public) after-auto source dynamic any interface&lt;BR /&gt;access-group External_Public_access_in in interface External_Public&lt;BR /&gt;access-group Internal_Private_access_out in interface Internal_Private&lt;BR /&gt;route External_Public 0.0.0.0 0.0.0.0 41.186.24.225 1&lt;BR /&gt;route Internal_Private 172.16.0.0 255.255.0.0 172.15.0.1 1&lt;BR /&gt;timeout xlate 3:00:00&lt;BR /&gt;timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02&lt;BR /&gt;timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00&lt;BR /&gt;timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00&lt;BR /&gt;timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute&lt;BR /&gt;timeout tcp-proxy-reassembly 0:01:00&lt;BR /&gt;dynamic-access-policy-record DfltAccessPolicy&lt;BR /&gt;http server enable&lt;BR /&gt;http 172.15.0.0 255.255.255.0 management&lt;BR /&gt;http 172.15.0.0 255.255.0.0 Internal_Private&lt;BR /&gt;http 172.16.0.0 255.255.0.0 Internal_Private&lt;BR /&gt;no snmp-server location&lt;BR /&gt;no snmp-server contact&lt;BR /&gt;snmp-server enable traps snmp authentication linkup linkdown coldstart&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac&lt;BR /&gt;crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac&lt;BR /&gt;crypto ipsec security-association lifetime seconds 28800&lt;BR /&gt;crypto ipsec security-association lifetime kilobytes 4608000&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1&lt;BR /&gt;crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5&lt;BR /&gt;crypto map External_Public_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP&lt;BR /&gt;crypto map External_Public_map interface External_Public&lt;BR /&gt;crypto isakmp enable External_Public&lt;BR /&gt;crypto isakmp policy 10&lt;BR /&gt;&amp;nbsp;authentication crack&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;crypto isakmp policy 30&lt;BR /&gt;&amp;nbsp;authentication pre-share&lt;BR /&gt;&amp;nbsp;encryption 3des&lt;BR /&gt;&amp;nbsp;hash sha&lt;BR /&gt;&amp;nbsp;group 2&lt;BR /&gt;&amp;nbsp;lifetime 86400&lt;BR /&gt;telnet 172.15.0.0 255.255.0.0 Internal_Private&lt;BR /&gt;telnet 172.16.0.0 255.255.0.0 Internal_Private&lt;BR /&gt;telnet timeout 5&lt;BR /&gt;ssh 172.15.0.0 255.255.255.0 Internal_Private&lt;BR /&gt;ssh timeout 5&lt;BR /&gt;ssh version 2&lt;BR /&gt;console timeout 0&lt;BR /&gt;threat-detection basic-threat&lt;BR /&gt;threat-detection statistics host&lt;BR /&gt;threat-detection statistics port&lt;BR /&gt;threat-detection statistics protocol&lt;BR /&gt;threat-detection statistics access-list&lt;BR /&gt;no threat-detection statistics tcp-intercept&lt;BR /&gt;webvpn&lt;BR /&gt;group-policy tunnelgroup internal&lt;BR /&gt;group-policy tunnelgroup attributes&lt;BR /&gt;&amp;nbsp;wins-server value 196.44.250.215 172.16.7.135&lt;BR /&gt;&amp;nbsp;dns-server value 196.44.250.214 172.16.7.146&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;&amp;nbsp;client-access-rule none&lt;BR /&gt;group-policy ipsec-tunnel internal&lt;BR /&gt;group-policy ipsec-tunnel attributes&lt;BR /&gt;&amp;nbsp;wins-server value 196.44.250.215&lt;BR /&gt;&amp;nbsp;dns-server value 196.44.250.214 172.15.0.1&lt;BR /&gt;&amp;nbsp;vpn-tunnel-protocol IPSec&lt;BR /&gt;username nmg123 password 9YDhIrAWgtNH6hRV encrypted privilege 15&lt;BR /&gt;username michael password pmq6bo0tJY2Mul49 encrypted&lt;BR /&gt;username user2 password 7/aJ4L5N26RYoCol encrypted&lt;BR /&gt;username user2 attributes&lt;BR /&gt;&amp;nbsp;service-type nas-prompt&lt;BR /&gt;username mercy password fDTq5FrBs3bPXYOT encrypted&lt;BR /&gt;username root password iJ3E64kkkGdb7O5u encrypted privilege 15&lt;BR /&gt;tunnel-group ipsec-tunnel type remote-access&lt;BR /&gt;tunnel-group ipsec-tunnel general-attributes&lt;BR /&gt;&amp;nbsp;address-pool ipsec-pool&lt;BR /&gt;&amp;nbsp;default-group-policy ipsec-tunnel&lt;BR /&gt;tunnel-group tunnelgroup type remote-access&lt;BR /&gt;tunnel-group tunnelgroup general-attributes&lt;BR /&gt;&amp;nbsp;address-pool ipsec-pool&lt;BR /&gt;&amp;nbsp;default-group-policy tunnelgroup&lt;BR /&gt;tunnel-group tunnelgroup ipsec-attributes&lt;BR /&gt;&amp;nbsp;pre-shared-key *****&lt;BR /&gt;!&lt;BR /&gt;class-map inspection_default&lt;BR /&gt;&amp;nbsp;match default-inspection-traffic&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp;parameters&lt;BR /&gt;&amp;nbsp; message-length maximum client auto&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt;&amp;nbsp;class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp; inspect ftp&lt;BR /&gt;&amp;nbsp; inspect h323 h225&lt;BR /&gt;&amp;nbsp; inspect h323 ras&lt;BR /&gt;&amp;nbsp; inspect rsh&lt;BR /&gt;&amp;nbsp; inspect rtsp&lt;BR /&gt;&amp;nbsp; inspect sqlnet&lt;BR /&gt;&amp;nbsp; inspect skinny&lt;BR /&gt;&amp;nbsp; inspect sunrpc&lt;BR /&gt;&amp;nbsp; inspect xdmcp&lt;BR /&gt;&amp;nbsp; inspect sip&lt;BR /&gt;&amp;nbsp; inspect netbios&lt;BR /&gt;&amp;nbsp; inspect tftp&lt;BR /&gt;&amp;nbsp; inspect ip-options&lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;BR /&gt;!&lt;BR /&gt;service-policy global_policy global&lt;BR /&gt;prompt hostname context&lt;BR /&gt;Cryptochecksum:a2f1d375873b78c7173ca6911c0d3354&lt;BR /&gt;: end&lt;BR /&gt;xxxxxx#&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;How can i sort this out?&lt;/P&gt;&lt;P&gt;Do i need to creat a NAT to direct these external mails to the router?&lt;/P&gt;&lt;P&gt;Kindly help&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 06:09:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mr-michael-mutua/m-p/2690621#M194451</guid>
      <dc:creator>Mykheymutua</dc:creator>
      <dc:date>2019-03-12T06:09:40Z</dc:date>
    </item>
    <item>
      <title>Hi,What is your mail server</title>
      <link>https://community.cisco.com/t5/network-security/mr-michael-mutua/m-p/2690622#M194452</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;What is your mail server IP address ? Are you able to send outbound emails ? Is the issue only with the inbound emails ?&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2015 11:59:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mr-michael-mutua/m-p/2690622#M194452</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2015-06-23T11:59:02Z</dc:date>
    </item>
    <item>
      <title> The mail server ip address</title>
      <link>https://community.cisco.com/t5/network-security/mr-michael-mutua/m-p/2690623#M194453</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;The mail server ip address is 172.15.0.14 and we also have a mail marshal on ip 172.15.0.17 that basically checks external emails before they get to our domain.&lt;/P&gt;&lt;P&gt;We can not receive external emails (yahoomail and gmail) in to our domain.&lt;/P&gt;&lt;P&gt;I have also realised that port 25 is closed on checking at ping.eu&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2015 12:09:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mr-michael-mutua/m-p/2690623#M194453</guid>
      <dc:creator>Mykheymutua</dc:creator>
      <dc:date>2015-06-23T12:09:08Z</dc:date>
    </item>
  </channel>
</rss>

