<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Problem with the SMTP traffic on Cisco ASA 5510 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506915#M606921</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Juan,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I saw something interesting in the capture.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;The capture on the inside interface, the CAPIN shows connection connection coming from 10.1.x.x IP address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is that somehow connected to your inside network.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Please provide us some information about the topology and if possible a copy of the configuration on the ASA, so that we have better detail to work with.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Cheers,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Nash.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 15 Nov 2010 16:10:22 GMT</pubDate>
    <dc:creator>apothula</dc:creator>
    <dc:date>2010-11-15T16:10:22Z</dc:date>
    <item>
      <title>Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506910#M606916</link>
      <description>&lt;P&gt;I have a problem with the SMTP &lt;SPAN class="short_text" id="result_box" lang="en"&gt;&lt;SPAN&gt;traffic on my cisco asa.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;I have a host with IP public, this host respond on ports 110 and 443 from outside but the port 25 not responding.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;I have this configuration:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;access-list 101 extended permit tcp any host 189.168.70.67 eq pop3 &lt;BR /&gt;access-list 101 extended permit tcp any host 189.168.70.67 eq smtp &lt;BR /&gt;access-list 101 extended permit tcp any host 189.2168.70.67 eq https&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;static (inside,outside) 189.168.70.67 10.10.10.18 netmask 255.255.255.255&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;I have this version:&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;Cisco Adaptive Security Appliance Software Version 7.2(3) &lt;BR /&gt;Device Manager Version 5.2(3)&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;Compiled on Wed 15-Aug-07 16:08 by builders&lt;BR /&gt;System image file is "disk0:/asa723-k8.bin"&lt;BR /&gt;Config file at boot was "startup-config"&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;ASA5510 up 3 days 8 hours&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;Hardware:&amp;nbsp;&amp;nbsp; ASA5510, 256 MB RAM, CPU Pentium 4 Celeron 1600 MHz&lt;BR /&gt;Internal ATA Compact Flash, 256MB&lt;BR /&gt;BIOS Flash M50FW080 @ 0xffe00000, 1024KB&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;Somebody can help me ..&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="short_text" lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:08:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506910#M606916</guid>
      <dc:creator>ixmiquilpan</dc:creator>
      <dc:date>2019-03-11T19:08:52Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506911#M606917</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your static NAT and ACL configuration look OK.&amp;nbsp; The easiest way to determine the issue would be to set up packet captures on the ASA:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp any host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;189.168.70.67 eq smtp&lt;BR /&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;189.168.70.67 eq smtp any&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp any host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;10.10.10.18 eq smtp&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;10.10.10.18 eq smtp any&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cap CAPIN access-list CAP interface inside&lt;/P&gt;&lt;P&gt;cap CAPOUT access-list CAP interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You can check the captures with "show cap CAPIN" and "show cap CAPOUT".&amp;nbsp; Is the 10.10.10.18 host responding to SMTP requests?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 12 Nov 2010 23:25:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506911#M606917</guid>
      <dc:creator>Allen P Chen</dc:creator>
      <dc:date>2010-11-12T23:25:19Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506912#M606918</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Allen,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN id="result_box" lang="en"&gt;&lt;SPAN&gt;Does not capture anything from outsite&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;.&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;The connection is not responding to port 25 from outside.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;U:\&amp;gt;telnet 189.168.70.67 &lt;STRONG&gt;25&lt;BR /&gt;&lt;/STRONG&gt;Connecting To 189.168.70.67...Could not open connection to the host, on port 25:&lt;BR /&gt; Connect failed&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;U:\&amp;gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;U:\&amp;gt;telnet 189.168.70.67 &lt;STRONG&gt;110&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;220 SRVCH08.chmx.local Microsoft ESMTP MAIL Service ready at Fri, 12 Nov 2010 18&lt;BR /&gt;:25:28 -0600&lt;BR /&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;/SPAN&gt;&lt;SPAN lang="en"&gt;&lt;/SPAN&gt;&lt;SPAN lang="en"&gt;&lt;/SPAN&gt;&lt;SPAN lang="en"&gt;&lt;/SPAN&gt;&lt;SPAN lang="en"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN lang="en"&gt;&lt;SPAN&gt;ASA5510# show cap CAPIN&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;0 packet captured&lt;BR /&gt;0 packet shown&lt;BR /&gt;ASA5510# show cap CAPOUT&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;0 packet captured&lt;BR /&gt;0 packet shown&lt;BR /&gt;ASA5510# show cap CAPIN &lt;BR /&gt;3 packets captured&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 1: 17:45:03.555818 10.1.1.35.1474 &amp;gt; 189.168.70.67.25: S 950061106:950061106(0) win 65535 &lt;MSS 1460=""&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 2: 17:45:06.493397 10.1.1.35.1474 &amp;gt; 189.168.70.67.25: S 950061106:950061106(0) win 65535 &lt;MSS 1460=""&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 3: 17:45:12.428658 10.1.1.35.1474 &amp;gt; 189.168.70.67.25: S 950061106:950061106(0) win 65535 &lt;MSS 1460=""&gt;&lt;BR /&gt;3 packets shown&lt;BR /&gt;ASA5510# &lt;/MSS&gt;&lt;/MSS&gt;&lt;/MSS&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 13 Nov 2010 00:20:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506912#M606918</guid>
      <dc:creator>ixmiquilpan</dc:creator>
      <dc:date>2010-11-13T00:20:17Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506913#M606919</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is the upstream device blocking port 25?&amp;nbsp; Do you have access to the upstream device?&amp;nbsp; If traffic to port 25 is not reaching the ASA, then there is really nothing the ASA can do. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As a test, let's modify the capture so that we capture traffic for POP3 as well:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no cap CAPOUT&lt;/P&gt;&lt;P&gt;no cap CAPIN&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please add the following to the CAP access-list:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp any host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;189.168.70.67 eq 110&lt;BR /&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;189.168.70.67 eq 110 any&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp any host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;10.10.10.18 eq 110&lt;BR /&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;access-list CAP permit tcp host &lt;SPAN class="short_text" lang="en"&gt;&lt;SPAN&gt;10.10.10.18 eq 110 any&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then reapply the captures:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cap CAPIN access-list CAP interface inside&lt;/P&gt;&lt;P&gt;cap CAPOUT access-list CAP interface outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you see traffic for 110 but not for 25?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 13 Nov 2010 00:45:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506913#M606919</guid>
      <dc:creator>Allen P Chen</dc:creator>
      <dc:date>2010-11-13T00:45:51Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506914#M606920</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Did you try going to service policies and turn on esmtp inspection? I seem to remember a long time ago, with about your same version, that our exchange server couldn't connect via port 25. After I turned on that setting, it worked fine.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Nov 2010 15:51:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506914#M606920</guid>
      <dc:creator>jcdod</dc:creator>
      <dc:date>2010-11-15T15:51:41Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506915#M606921</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Juan,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I saw something interesting in the capture.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;The capture on the inside interface, the CAPIN shows connection connection coming from 10.1.x.x IP address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is that somehow connected to your inside network.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Please provide us some information about the topology and if possible a copy of the configuration on the ASA, so that we have better detail to work with.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Cheers,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Nash.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Nov 2010 16:10:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506915#M606921</guid>
      <dc:creator>apothula</dc:creator>
      <dc:date>2010-11-15T16:10:22Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506916#M606922</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I only see the connections on prt 110 ...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA5510# show cap CAPIN&lt;BR /&gt;15 packets captured&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 1: 08:43:44.385295 189.135.230.67.1138 &amp;gt; 10.1.1.8.110: S 2396528201:2396528201(0) win 65535 &lt;MSS 1380=""&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 2: 08:43:44.385569 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: S 818246061:818246061(0) ack 2396528202 win 8192 &lt;MSS 1460=""&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 3: 08:43:44.396723 189.135.230.67.1138 &amp;gt; 10.1.1.8.110: . ack 818246062 win 65535&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 4: 08:43:44.397974 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: P 818246062:818246113(51) ack 2396528202 win 64860&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 5: 08:43:44.408807 189.135.230.67.1138 &amp;gt; 10.1.1.8.110: P 2396528202:2396528217(15) ack 818246113 win 65484&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 6: 08:43:44.413491 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: P 818246113:818246118(5) ack 2396528217 win 64845&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 7: 08:43:44.424843 189.135.230.67.1138 &amp;gt; 10.1.1.8.110: P 2396528217:2396528234(17) ack 818246118 win 65479&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 8: 08:43:44.608763 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: . ack 2396528234 win 64828&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 9: 08:43:45.247759 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: P 818246118:818246152(34) ack 2396528234 win 64828&lt;BR /&gt;&amp;nbsp; 10: 08:43:45.260148 189.135.230.67.1138 &amp;gt; 10.1.1.8.110: P 2396528234:2396528240(6) ack 818246152 win 65445&lt;BR /&gt;&amp;nbsp; 11: 08:43:45.273148 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: P 818246152:818246213(61) ack 2396528240 win 64822&lt;BR /&gt;&amp;nbsp; 12: 08:43:45.273255 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: F 818246213:818246213(0) ack 2396528240 win 64822&lt;BR /&gt;&amp;nbsp; 13: 08:43:45.284302 189.135.230.67.1138 &amp;gt; 10.1.1.8.110: . ack 818246214 win 65384&lt;BR /&gt;&amp;nbsp; 14: 08:43:45.286255 189.135.230.67.1138 &amp;gt; 10.1.1.8.110: F 2396528240:2396528240(0) ack 818246214 win 65384&lt;BR /&gt;&amp;nbsp; 15: 08:43:45.286377 10.1.1.8.110 &amp;gt; 189.135.230.67.1138: . ack 2396528241 win 64822&lt;BR /&gt;15 packets shown&lt;BR /&gt;ASA5510# show cap CAOUT&lt;BR /&gt;ERROR: Capture &lt;CAOUT&gt; does not exist&lt;BR /&gt;ASA5510# show cap CAPOUT&lt;BR /&gt;16 packets captured&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 1: 08:43:44.385127 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: S 1932398372:1932398372(0) win 65535 &lt;MSS 1452=""&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 2: 08:43:44.385600 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: S 1684626087:1684626087(0) ack 1932398373 win 8192 &lt;MSS 1380=""&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 3: 08:43:44.396692 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: . ack 1684626088 win 65535&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 4: 08:43:44.397989 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: P 1684626088:1684626139(51) ack 1932398373 win 64860&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 5: 08:43:44.408792 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: P 1932398373:1932398388(15) ack 1684626139 win 65484&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 6: 08:43:44.413507 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: P 1684626139:1684626144(5) ack 1932398388 win 64845&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 7: 08:43:44.424828 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: P 1932398388:1932398405(17) ack 1684626144 win 65479&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 8: 08:43:44.608778 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: . ack 1932398405 win 64828&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 9: 08:43:45.247774 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: P 1684626144:1684626178(34) ack 1932398405 win 64828&lt;BR /&gt;&amp;nbsp; 10: 08:43:45.260133 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: P 1932398405:1932398411(6) ack 1684626178 win 65445&lt;BR /&gt;&amp;nbsp; 11: 08:43:45.273163 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: P 1684626178:1684626239(61) ack 1932398411 win 64822&lt;BR /&gt;&amp;nbsp; 12: 08:43:45.273270 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: F 1684626239:1684626239(0) ack 1932398411 win 64822&lt;BR /&gt;&amp;nbsp; 13: 08:43:45.284271 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: . ack 1684626240 win 65384&lt;BR /&gt;&amp;nbsp; 14: 08:43:45.286240 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: F 1932398411:1932398411(0) ack 1684626240 win 65384&lt;BR /&gt;&amp;nbsp; 15: 08:43:45.286392 189.254.69.68.110 &amp;gt; 189.135.230.67.1138: . ack 1932398412 win 64822&lt;BR /&gt;&amp;nbsp; 16: 08:44:02.248903 189.135.230.67.1138 &amp;gt; 189.254.69.68.110: R 1932398412:1932398412(0) ack 1684626240 win 0&lt;/MSS&gt;&lt;/MSS&gt;&lt;/CAOUT&gt;&lt;/MSS&gt;&lt;/MSS&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Nov 2010 15:23:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506916#M606922</guid>
      <dc:creator>ixmiquilpan</dc:creator>
      <dc:date>2010-11-16T15:23:37Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506917#M606923</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Nash,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I sent you my network topology and ASA config.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your help ...&lt;/P&gt;&lt;P&gt;Gracias por su ayuda ...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Nov 2010 15:25:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506917#M606923</guid>
      <dc:creator>ixmiquilpan</dc:creator>
      <dc:date>2010-11-16T15:25:16Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506918#M606924</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;STRONG&gt;Hi,&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;I have this on my ASA config, the esmtp inspection is good?&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map type inspect dns migrated_dns_map_1&lt;BR /&gt; parameters&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns migrated_dns_map_1 &lt;BR /&gt;&amp;nbsp; inspect ftp &lt;BR /&gt;&amp;nbsp; inspect h323 h225 &lt;BR /&gt;&amp;nbsp; inspect h323 ras &lt;BR /&gt;&amp;nbsp; inspect rsh &lt;BR /&gt;&amp;nbsp; inspect rtsp &lt;BR /&gt;&amp;nbsp; inspect sqlnet &lt;BR /&gt;&amp;nbsp; inspect skinny &lt;BR /&gt;&amp;nbsp; inspect sunrpc &lt;BR /&gt;&amp;nbsp; inspect xdmcp &lt;BR /&gt;&amp;nbsp; inspect sip &lt;BR /&gt;&amp;nbsp; inspect netbios &lt;BR /&gt;&amp;nbsp; inspect tftp &lt;BR /&gt;&amp;nbsp; inspect ils &lt;BR /&gt;&amp;nbsp; inspect http &lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Nov 2010 15:28:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506918#M606924</guid>
      <dc:creator>ixmiquilpan</dc:creator>
      <dc:date>2010-11-16T15:28:02Z</dc:date>
    </item>
    <item>
      <title>Re: Problem with the SMTP traffic on Cisco ASA 5510</title>
      <link>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506919#M606925</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;If you are only seeing traffic for TCP port 110 on the ASA and not TCP port 25, then something upstream is blocking that traffic&lt;/P&gt;&lt;P&gt;from reaching the ASA.&amp;nbsp; You might want to investigate the upstream device. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you run a packet capture in front of the upstream device, do you see traffic on TCP port 25 reaching that device?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Nov 2010 18:16:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/problem-with-the-smtp-traffic-on-cisco-asa-5510/m-p/1506919#M606925</guid>
      <dc:creator>Allen P Chen</dc:creator>
      <dc:date>2010-11-16T18:16:41Z</dc:date>
    </item>
  </channel>
</rss>

