cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
683
Views
0
Helpful
1
Replies

Mails go crazy !!!

tauseef
Level 1
Level 1

Hi,

I have a PIX configured for internal LAN with a Mail server with Live IP.

this is as follows

static (inside,out) 195.219.36.194 192.168.0.2 netmask 255.255.255.255 0 0

static (inside,out) 195.219.36.195 192.168.0.3 netmask 255.255.255.255 0 0

conduit permit icmp any any

conduit permit tcp host 195.229.45.194 eq smtp any

conduit permit tcp host 195.229.45.195 eq sqlnet any

The users on the inside can send and receive mails , but at times the mail does not go and says the domain could not be found , and this changes continiously from time to time , ie different mail destinations , is it to do with the PIX ? R the DNS ?

Also , From the internal network I am able to ping the LIVE IP that is 195 , but the mail server IP ie 194 I am not able to ping , but am able to ping the same IP's both of them from the outside. Any clues why so ?

*** PS for the sake of security the IP's provided are all fictional,I hope you understand.

Thanx ! in advance.

Bye

tauseef

1 Reply 1

mkaneko
Cisco Employee
Cisco Employee

Tauseef,

re: domain, PIX doesn't have dns function thus the problem may be at DNS server. If you can post the error message it will help.

About the icmp, its PIX's specification to block

icmp reply. Try use conduit permit icmp any any

temporaly to test.