05-21-2006 10:29 PM - edited 02-21-2020 12:54 AM
Hi All,
We have ASA which has default service policies .Most of our SMTP mails bounce due to ESMTP inspection.Pls let us know how can we disable only the default ESMTP in default service policy and how can SMTP mails be passed thru an ASA without any inspection
ANy pointers appreciated
05-21-2006 11:57 PM
Try (in config mode)
no fixup protocol smtp 25
Save with: write mem
Hopt this helps and please rate posts!
Jay
05-22-2006 12:27 AM
My apologies... not had my morning coffee, it should be: (in config mode)
no inspect esmtp
For ASA and not what I mentioned earlier, to disable the mail inspection.
HTH,
Jay
05-22-2006 01:03 AM
in config mode .. i think u will need to set it in the default policy .. which is usually the case where it is applied.. i dont see how its causing ur mails to bounce off though. it actually helps email services in the fact that it identifies the connection as that bound for email server and scans the traffic with email rules..
its actually a good thing to have..but am not sure.. ur environment might be complex enough to cause it to create problems.. will be clearer if u post ur full config..
in the meantime.. try disabling the inspect on smtp as below and see if it fixes ur problem.. i really doubt it.. enlighten me if it does..
lol..
conf t
policy-map global_policy
class inspection_default
no inspect esmtp
05-22-2006 09:02 AM
Hi we suspect the PIX ASA does not allow ESMTP verb "8 bit mime"250-8bitmime .ANy ideas how to let this pass thru ASA ESMTP inspection ???
Is there anyway to capture the same and find out if its the ASA which is actually causing the problem??
05-23-2006 01:19 AM
hi , i assume u have tried to just remove the pix altogether and make sure ur emails are moving to and fro.. then watch the live log to see whats happening on port 25 .. and 110.. i assume u have already allowed these in ur access lists... like i said before.. post ur config.. will make it quicker & easier to help u
05-23-2006 03:13 AM
Greetings
We had the same problem with mail, our research revealed Microsoft Exc2003 is not complelty rfc compliant and the fixup corrupts the mail header, we resolved this by removing the fixup from the default policy, it worked immediatly. PS im refering to pix v7.x with exchange 2003
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide