<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Mail - ASA access question.. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783783#M422088</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the remote branches connect to a core router via (vpn tunnel on shared data circuit) that inturns forwards traffic to the ASA. Permissions are ACL based.&lt;/P&gt;&lt;P&gt;home users use the http rule that allows them to connect to the mail server via browser only. the mails stays on the servers unless they connect through a vpn client and download the mails .. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks again &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 11 Jun 2007 07:27:51 GMT</pubDate>
    <dc:creator>a.shaukat</dc:creator>
    <dc:date>2007-06-11T07:27:51Z</dc:date>
    <item>
      <title>Mail - ASA access question..</title>
      <link>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783781#M422086</link>
      <description>&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;im running an ASA 5520 (ios 7.2(2)). &lt;/P&gt;&lt;P&gt;the mails for my organization were being collected in a pop account at the isp end. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the mail server is allowed to the outside network (internet)so it was easily sending mails outside. &lt;/P&gt;&lt;P&gt;to get mails we used to logonto a pop account and retrieve mails via pop retrieving software. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;now we decided not to use the isp pop account and use our mail server to recieve mails directly. ( the mx entery on our hosted dns will be the live ip of our mail sever).   &lt;/P&gt;&lt;P&gt;my Question is .. what port will i have to open on my ASA security rule to allow mails from outside network being sent to a server on my inside network,.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;uptill now i only had http port opened for that server so it was acessable for home users.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;will i need to open pop3 port or smtp ???&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;stuck badly..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 09:33:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783781#M422086</guid>
      <dc:creator>a.shaukat</dc:creator>
      <dc:date>2020-02-21T09:33:53Z</dc:date>
    </item>
    <item>
      <title>Re: Mail - ASA access question..</title>
      <link>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783782#M422087</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You will need to open only SMTP, for your server to accept mails from the Internet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list DMZ extended permit ip host mail server IP any&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What will happen to your remote users. How will they access mail ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to allow them to access from home then you may have to open either POP / Other accesss basede on your Mail server&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH - Please rate all useful posts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Jun 2007 05:04:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783782#M422087</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-11T05:04:57Z</dc:date>
    </item>
    <item>
      <title>Re: Mail - ASA access question..</title>
      <link>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783783#M422088</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks ..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the remote branches connect to a core router via (vpn tunnel on shared data circuit) that inturns forwards traffic to the ASA. Permissions are ACL based.&lt;/P&gt;&lt;P&gt;home users use the http rule that allows them to connect to the mail server via browser only. the mails stays on the servers unless they connect through a vpn client and download the mails .. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks again &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Jun 2007 07:27:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783783#M422088</guid>
      <dc:creator>a.shaukat</dc:creator>
      <dc:date>2007-06-11T07:27:51Z</dc:date>
    </item>
    <item>
      <title>Re: Mail - ASA access question..</title>
      <link>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783784#M422089</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sorry the right commmand is &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list DMZ extended permit tcp host (Mail server IP ) any eq smtp&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 11 Jun 2007 07:40:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/mail-asa-access-question/m-p/783784#M422089</guid>
      <dc:creator>anandramapathy</dc:creator>
      <dc:date>2007-06-11T07:40:10Z</dc:date>
    </item>
  </channel>
</rss>

