Solved

Can't telnet to smtp server outside of network

Posted on 2011-03-09
20
757 Views
Last Modified: 2012-06-21
Having issues with 2010 exchange and getting mail to go out, so i tested from the exchange server telnet on port 25 to a mailserver, and it times out, it resolves with nslookup and responds to ping, just won't telnet,  so i thought, ok, ill try from a different machine, same thing, all workstations can't telnet out on port 25, looking at firewall rules etc and notice they have a gpo of some sort dealing with the firewall.  Could that be the problem or is it a router issue possibly?
0
Comment
Question by:jasonmichel
  • 7
  • 5
  • 3
  • +3
20 Comments
 
LVL 11

Accepted Solution

by:
Tasmant earned 167 total points
Comment Utility
i don't think it's linked with your router as you can ping outside computers. therefore we need to consider that you are well NAT translated.
but we can clearly suppose your firewalls rules don't allow you to go out on port 25, which is an issue, especially for your Exchange server (could be good for computers).
maybe could you be clearer with "gpo of some sort dealing with the firewall" if you want to get more details ? :)
0
 
LVL 76

Assisted Solution

by:Alan Hardisty
Alan Hardisty earned 167 total points
Comment Utility
The other option that is possible is that your ISP has port 25 blocked outbound as an anti-spam measure, but you would need to rule out your firewall as the problem first before beating on the door of your ISP.
0
 
LVL 23

Expert Comment

by:Suliman Abu Kharroub
Comment Utility
Please test smtp on http://mxtoolbox.com

if it fails, check the exchange services...information store...
0
 
LVL 8

Expert Comment

by:GundogTrainer
Comment Utility
alanhardisty sounds the most plausable explanation if your having the issue on all clients.

I would try and telnet to the SMTP server of your ISP as if you were using a standard mail client.
If that works then its most likely your ISP preventing users from spamming and you may need to forward mails through this smarthost rather than deliver direct.
0
 
LVL 8

Expert Comment

by:GundogTrainer
Comment Utility
Forgot to ask, can you telnet to port 25 on your exchange server from a local client ?
This would test if it was a possible GPO \ client firewall iss or is at or beyond the gateway.
0
 
LVL 17

Expert Comment

by:MAG03
Comment Utility
from your smtp server go to http://canyouseeme.org/ enter port 25 and see if the port shows as open
0
 
LVL 76

Expert Comment

by:Alan Hardisty
Comment Utility
The question states:

"Having issues with 2010 exchange and getting mail to go out"

How is checking the inbound port going to help?
0
 
LVL 1

Author Comment

by:jasonmichel
Comment Utility
I can telnet into my exchange from inside and outside fine
0
 
LVL 76

Expert Comment

by:Alan Hardisty
Comment Utility
Did this work before and recently it stopped?
0
What Should I Do With This Threat Intelligence?

Are you wondering if you actually need threat intelligence? The answer is yes. We explain the basics for creating useful threat intelligence.

 
LVL 1

Author Comment

by:jasonmichel
Comment Utility
Fresh exch 2010 install...so hadn't had to test before....never had issues with send connector to inet before...usually pretty simple
0
 
LVL 76

Expert Comment

by:Alan Hardisty
Comment Utility
Have you sent mail out from your IP before using port 25?
0
 
LVL 1

Author Comment

by:jasonmichel
Comment Utility
Yes from an icewarp server we are currently migrating from
0
 
LVL 76

Expert Comment

by:Alan Hardisty
Comment Utility
Is the Icewarp server still connected?
0
 
LVL 1

Author Comment

by:jasonmichel
Comment Utility
I believe so, but dns internally has been changed and the statements in router have been changed
0
 
LVL 76

Expert Comment

by:Alan Hardisty
Comment Utility
Ah - okay - I was just thinking about changing the IP of a client to that of the Icewarp box and testing telnet from there.

Sounds like the router changes got messed up.

Can you check them please - seems the most logical place to check.
0
 
LVL 1

Author Comment

by:jasonmichel
Comment Utility
I can telnet from outside to exchange fine?
0
 
LVL 8

Assisted Solution

by:GundogTrainer
GundogTrainer earned 166 total points
Comment Utility
I think what alanhardisty meant was there may be an IP filter on the router to block port 25 from everyone except the mail server.
You have updated the port forwarding rule for inbound traffic, but is there an outbound filter applied ?
0
 
LVL 76

Expert Comment

by:Alan Hardisty
Comment Utility
Yep - that's what I meant.

If you could send out before the changes to the router on the Icewarp IP - try setting a PC up as the same IP and test with Telnet.  If that works - you know the issues is a firewall / router issue.

If not - then it is still probably the router / firewall.
0
 
LVL 11

Expert Comment

by:Tasmant
Comment Utility
that's what i said in the first answer ...
0

Featured Post

How to run any project with ease

Manage projects of all sizes how you want. Great for personal to-do lists, project milestones, team priorities and launch plans.
- Combine task lists, docs, spreadsheets, and chat in one
- View and edit from mobile/offline
- Cut down on emails

Join & Write a Comment

Follow this checklist to learn more about the 15 things you should never include in an email signature from personal quotes, animated gifs and out-of-date marketing content.
Marketers need statistics and metrics like everybody else needs oxygen. In this article we explain how to enable marketing campaign statistics for Microsoft Exchange mail.
In this video we show how to create an Address List in Exchange 2013. We show this process by using the Exchange Admin Center. Log into Exchange Admin Center.: First we need to log into the Exchange Admin Center. Navigate to the Organization >> Ad…
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…

744 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

13 Experts available now in Live!

Get 1:1 Help Now