[x]
Posted via EE Mobile

Search, ask, and monitor your questions on the go with EE Mobile. Visit Experts Exchange from your mobile device and never be out of touch again.

Question
[x]
Attachment Details

Email thru ASA 5505

Asked by badams_iyns in Networking Hardware Firewalls, Enterprise Firewalls, Exchange Email Server

I'm not getting email and I can't telnet to port 25. I can telnet to 25 from the lan but when I try to telnet to 25 to the external IP it fails. Mail I send from my yahoo account fails, saying it'll keep trying, indicating the world just can't see the server at all.

ICMP is failing as well, at least during initial setup and testing, I'd like to be able to ping.

What's a man to do?
1:
2:
3:
4:
5:
6:
7:
8:
9:
10:
11:
12:
13:
14:
15:
16:
17:
18:
19:
20:
21:
22:
23:
24:
25:
26:
27:
28:
29:
30:
31:
32:
33:
34:
35:
36:
37:
38:
39:
40:
41:
42:
43:
44:
45:
46:
47:
48:
49:
50:
51:
52:
53:
54:
55:
56:
names
name 10.10.100.23 EXCHANGE
!
interface Vlan1
 nameif inside
 security-level 100
 ip address 10.10.100.1 255.255.255.0 
!
interface Vlan2
 nameif outside
 security-level 0
 ip address XXX.TER.NAL.33 255.255.255.248 
!
dns server-group DefaultDNS
 domain-name nunyobidness.com 
object-group network EMAIL
 network-object EXCHANGE 255.255.255.255
access-list outside_access_in extended permit icmp any any 
access-list outside_access_in extended permit tcp any host EXCHANGE eq smtp 
access-list inside_access_out extended permit icmp any any 
access-list inside_access_in extended permit ip any any 
access-list OUTSIDE_ACCESS_IN extended permit tcp any host XXX.TER.NAL.34 eq smtp 
icmp unreachable rate-limit 1 burst-size 1
icmp permit any inside
icmp permit any outside
global (outside) 1 interface
nat (inside) 1 0.0.0.0 0.0.0.0
access-group inside_access_in in interface inside
access-group inside_access_out out interface inside
access-group outside_access_in in interface outside
route outside 0.0.0.0 0.0.0.0 ISP.'s.GW.38 1
!
class-map inspection_default
 match default-inspection-traffic
!
policy-map type inspect dns preset_dns_map
 parameters
  message-length maximum 512
policy-map global_policy
 class inspection_default
  inspect dns preset_dns_map 
  inspect ftp 
  inspect h323 h225 
  inspect h323 ras 
  inspect rsh 
  inspect rtsp 
  inspect sqlnet 
  inspect skinny 
  inspect sunrpc 
  inspect xdmcp 
  inspect sip 
  inspect netbios 
  inspect tftp 
!
service-policy global_policy global
smtp-server 10.10.100.23
[+][-]10/28/09 05:49 PM, ID: 25689700Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10/28/09 06:13 PM, ID: 25689833Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]10/29/09 12:30 AM, ID: 25691256Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10/29/09 05:37 AM, ID: 25692903Expert Comment

At Experts Exchange, members can ask their questions to thousands of technology professionals, also known as Experts. Experts compete and collaborate to answer those questions by leaving comments like this one.

Start your 30-day free trial to view this Expert Comment or ask the Experts your question.

 
[+][-]10/29/09 09:36 AM, ID: 25695470Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]10/29/09 05:02 PM, ID: 25699299Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
[+][-]11/02/09 11:00 AM, ID: 25722452Author Comment

Often, when Experts are collaborating with members who have asked questions, they will request additional information about the problem. Askers respond with an author comment like this one.

Start your 30-day free trial to view this Author Comment or ask the Experts your question.

 
 
Loading Advertisement...
20091111-EE-VQP-92 - Hierarchy / EE_QW_3_20080625