port 25 is not open on a ASA 5505

Posted on 2009-04-21
Last Modified: 2012-05-06
I am trying to set up my mail server through a Cisco ASA 5505.

Port 25 seems to be blocked although I believe that it is opened on the firewall.  Additionally I am trying to allow ICMP  traffic to test the server right now and I can not get that to work either.  Any ideas as I am sure that I am doing something wrong.

These are the lines that I have that relate to the smtp.  Anything that I am missing?  i dont see smtp defined as an object-group in the programming, but i figured that it was just in the hard coding of the firewall?

access-list 100 extended permit tcp any host eq smtp

access-list 100 extended permit icmp any any

static (inside,outside) 192.168.222.x netmask

access-group 100 in interface outside

Open in new window

Question by:ryan80
    LVL 43

    Accepted Solution

    Your config looks fine.  Can you telnet to port 25 from an inside PC to your mail server?

    Is the Windows Firewall running on the 192.168.222.x host?  The 192.168.222.x host has the ASA 5505 as its default gateway, right? or if not on the same subnet, the ASA has a route to 192.168.222.x?

    > dont see smtp defined as an object-group in the programming, but i figured that it was just in the hard coding of the firewall?
    LVL 12

    Author Closing Comment

    Ok I found the problem.  Its my fat fingers.  I have another Fios connection that I use for a test network.  I went to go change the gateway to test it through that modem and it looks like I jammed on the keyboard to hard.  I hit .22 instead of .2 for the gateway.

    Thanks for pointing out a few things to make me check my own dumb mistakes.

    Write Comment

    Please enter a first name

    Please enter a last name

    We will never share this with anyone.

    Featured Post

    Highfive + Dolby Voice = No More Audio Complaints!

    Poor audio quality is one of the top reasons people don’t use video conferencing. Get the crispest, clearest audio powered by Dolby Voice in every meeting. Highfive and Dolby Voice deliver the best video conferencing and audio experience for every meeting and every room.

    This article assumes you have at least one Cisco ASA or PIX configured with working internet and a non-dynamic, public, address on the outside interface. If you need instructions on how to enable your device for internet, or basic configuration info…
    I recently attended Cisco Live! in Las Vegas, a conference that boasted over 28,000 techies in attendance, and a week of hands-on learning hosted by a solid partner with which Concerto goes to market.  Every year, Cisco displays cutting-edge technol…
    how to add IIS SMTP to handle application/Scanner relays into office 365.
    Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.

    760 members asked questions and received personalized solutions in the past 7 days.

    Join the community of 500,000 technology professionals and ask your questions.

    Join & Ask a Question

    Need Help in Real-Time?

    Connect with top rated Experts

    8 Experts available now in Live!

    Get 1:1 Help Now