cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
9855
Views
0
Helpful
6
Replies

ASA ESMTP inspection

Hi All,

We have ASA which has default service policies .Most of our SMTP mails bounce due to ESMTP inspection.Pls let us know how can we disable only the default ESMTP in default service policy and how can SMTP mails be passed thru an ASA without any inspection

ANy pointers appreciated

6 Replies 6

jmia
Level 7
Level 7

Try (in config mode)

no fixup protocol smtp 25

Save with: write mem

Hopt this helps and please rate posts!

Jay

My apologies... not had my morning coffee, it should be: (in config mode)

no inspect esmtp

For ASA and not what I mentioned earlier, to disable the mail inspection.

HTH,

Jay

in config mode .. i think u will need to set it in the default policy .. which is usually the case where it is applied.. i dont see how its causing ur mails to bounce off though. it actually helps email services in the fact that it identifies the connection as that bound for email server and scans the traffic with email rules..

its actually a good thing to have..but am not sure.. ur environment might be complex enough to cause it to create problems.. will be clearer if u post ur full config..

in the meantime.. try disabling the inspect on smtp as below and see if it fixes ur problem.. i really doubt it.. enlighten me if it does..

lol..

conf t

policy-map global_policy

class inspection_default

no inspect esmtp

Hi we suspect the PIX ASA does not allow ESMTP verb "8 bit mime"250-8bitmime .ANy ideas how to let this pass thru ASA ESMTP inspection ???

Is there anyway to capture the same and find out if its the ASA which is actually causing the problem??

hi , i assume u have tried to just remove the pix altogether and make sure ur emails are moving to and fro.. then watch the live log to see whats happening on port 25 .. and 110.. i assume u have already allowed these in ur access lists... like i said before.. post ur config.. will make it quicker & easier to help u

Greetings

We had the same problem with mail, our research revealed Microsoft Exc2003 is not complelty rfc compliant and the fixup corrupts the mail header, we resolved this by removing the fixup from the default policy, it worked immediatly. PS im refering to pix v7.x with exchange 2003

Review Cisco Networking for a $25 gift card