<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SMTP topology in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735722#M494034</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;static (inside,outside) tcp  (public ip-address) 25 (internal server ip-address) 25 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;Access-list out-in extended permit tcp host any (public ip-address used above) eq 25&lt;/P&gt;&lt;P&gt;Access-group out-in in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 06 Nov 2011 18:15:38 GMT</pubDate>
    <dc:creator>zulqurnain</dc:creator>
    <dc:date>2011-11-06T18:15:38Z</dc:date>
    <item>
      <title>SMTP topology</title>
      <link>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735719#M494028</link>
      <description>&lt;DIV&gt;&lt;P&gt;Hi&amp;nbsp; All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I&amp;nbsp; have queries regarding network topology when baracuda and smtp server&amp;nbsp; are deployed in the network.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;exchange&amp;nbsp; server------(2.1)-ROUTER(3.1)---------(3.2)BARACUDA(4.1)-------4.2)ASA(200.1.1.1)------OUTSIDE&lt;/P&gt;&lt;P&gt;(192.168.2.10)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (192.168.4.1) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;static (inside, outside ) tcp interface smtp 192.168.4.1&amp;nbsp; smtp netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nat (inside) 1 192.168.2.0 255.255.255.0&lt;/P&gt;&lt;P&gt;global&amp;nbsp; (inside) 1 interface&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list outin extended permit tcp any host&amp;nbsp; 200.1.1.1 eq smtp&amp;nbsp;&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;192.168.4.1 is baracuda ip and 192.168.2.10 is exchange&amp;nbsp; server ip.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My&amp;nbsp; query is, if baracuda is smtp gateway for exchange server and ASA is&amp;nbsp; default gateway for exchange server, is this configuration correct ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Second&amp;nbsp; query is that its seen cutomers configure that mails from outside come&amp;nbsp; to baracuda but when mails go to outside it bypass baracuda. So do we&amp;nbsp; have to some configuration changes or is it these servers setting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Third query&amp;nbsp; is in which cases baracuda server being smtp gateway is located at&amp;nbsp; outside of ASA and what changes will be in the configuation in that case&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help&amp;nbsp; would be appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;/DIV&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:46:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735719#M494028</guid>
      <dc:creator>vavij</dc:creator>
      <dc:date>2019-03-11T21:46:34Z</dc:date>
    </item>
    <item>
      <title>Re: SMTP topology</title>
      <link>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735720#M494030</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Barracuda can be the smtp gateway but exchange server gateway can be the internal router as long as the router knows how to forward traffic to outside through barracuda. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can configure it as you like but if one want to barracuda to send mails outside then you would have to configure exchange server with relay host configuration. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Practically it is not a good practice to put barracuda outside ASA as barracuda is a smtp gateway not a perimeter security devices which can filter traffic based on rules and allow and block. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 06 Nov 2011 14:44:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735720#M494030</guid>
      <dc:creator>zulqurnain</dc:creator>
      <dc:date>2011-11-06T14:44:56Z</dc:date>
    </item>
    <item>
      <title>Re: SMTP topology</title>
      <link>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735721#M494032</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your reply.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;One more question, is the configuration above correct for the inbound and outbound flow of mails?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 06 Nov 2011 14:58:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735721#M494032</guid>
      <dc:creator>vavij</dc:creator>
      <dc:date>2011-11-06T14:58:57Z</dc:date>
    </item>
    <item>
      <title>Re: SMTP topology</title>
      <link>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735722#M494034</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;static (inside,outside) tcp  (public ip-address) 25 (internal server ip-address) 25 netmask 255.255.255.255&lt;/P&gt;&lt;P&gt;Access-list out-in extended permit tcp host any (public ip-address used above) eq 25&lt;/P&gt;&lt;P&gt;Access-group out-in in interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from Cisco Technical Support iPad App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 06 Nov 2011 18:15:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/smtp-topology/m-p/1735722#M494034</guid>
      <dc:creator>zulqurnain</dc:creator>
      <dc:date>2011-11-06T18:15:38Z</dc:date>
    </item>
  </channel>
</rss>

