cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
567
Views
0
Helpful
2
Replies

ASA 5520 Mapping the mail server problems

zhou359004756
Level 1
Level 1

Installed ASA5520 the inside end one exchange server to assign it a fixed addresswithin the network, and static (inside, outside) of these servers is mapped to a public network IP (x.x.254.165), the domestic mail send and receive basicnormal, but abroadincoming mail will be blocked.

Because after my mail server sent out the message, send the IP address of the senderSMTP server Outgoing SMTP mail host IP Firewall outside interface IP (x.x.254.166). IP andinnuendo that IP is not the same as an IP.

Not be able to receive e-mail in a foreign country, I would like to ask how to solve?

And I cannot statically NAT to outside interface. This would stop all otyher services as well.

The following is my configuration:

interface GigabitEthernet0/0.265

description ## CT_Internet_10M ##

vlan 265

nameif outside1

security-level 0

ip address X.X.254.166 255.255.255.248 standby 59.61.86.164

!

object network Xiamen_mail_https

host X.X.200.200

object network Xiamen_mail_pop3

host X.X.200.200

object network Xiamen_mail_smtp

host X.X.200.200

object network Xiamen_mail_https

nat (inside,outside1) static x.x.254.165 service tcp https https

object network Xiamen_mail_pop3

nat (inside,outside1) static x.x.254.165 service tcp pop3 pop3

object network Xiamen_mail_smtp

nat (inside,outside1) static x.x.254.165 service tcp smtp smtp

                                                                      Thankyou!!!

1 Accepted Solution

Accepted Solutions

Have you configured a PTR-record for the IP x.x.254.165 with the FQDN of your mailserver? That's a typical problem.

-- 
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni

View solution in original post

2 Replies 2

Have you configured a PTR-record for the IP x.x.254.165 with the FQDN of your mailserver? That's a typical problem.

-- 
Don't stop after you've improved your network! Improve the world by lending money to the working poor:
http://www.kiva.org/invitedby/karsteni

Thankyou !!!

Review Cisco Networking products for a $25 gift card