Solved

what firewall rule do I use to allow email through my firewall

Posted on 2011-03-21
5
572 Views
Last Modified: 2012-05-11
I'm running exchange 2003, what firewall rule do I enable to allow email through my cisco ASA 5500? I set an allow from any to my exchange servers public IP address with TCP/SMTP protocol on port 25, but I'm still not recieving email. I also just had the public DNS entry mail for mail,mydomain.com. Am I just too impatient?
0
Comment
Question by:knfitz
5 Comments
 
LVL 2

Expert Comment

by:PowerToaster
ID: 35183137
Well a normal allow for smtp would be something like this.

permit tcp any host 10.10.110.1 eq smtp.

You may just be impatient but you could try sending something to the server from a public email like hotmail or gmail as a test.

Are you doing any NAT or is the public IP assinged directly to your mail server.

http://www.mxtoolbox.com/ has a number of very good free tools for remotely testing you mail servers configuration which may help you trouble shoot this.
0
 

Author Comment

by:knfitz
ID: 35183157
when I do the check dns in exchange system manager it says the domain is not valid. I set the fqdn to mail.mydomain.org
0
 

Expert Comment

by:aevegan
ID: 35183179
Sounds like maybe your missing the NAT rule (if you're using NAT)
0
 

Author Comment

by:knfitz
ID: 35183186
no, I have the nat rule in place and it's working. It looks like my isp is not done with my dns records. Let me give ti a little time.
0
 
LVL 6

Accepted Solution

by:
Lee_YCP earned 500 total points
ID: 35183982
Can you do a 'sho run' and post that so we can see your config and ACLs?  be sure to change or xx out your public IPs and pasword hashes.

Also, understand that your ISP may be configuring your DNS MX record, but you may still need to configure a DNS MX record internally to allow internal clients to find that domain.
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Concerto Cloud Services, a provider of fully managed private, public and hybrid cloud solutions, announced today it was named to the 20 Coolest Cloud Infrastructure Vendors Of The 2017 Cloud  (http://www.concertocloud.com/about/in-the-news/2017/02/0…
In-place Upgrading Dirsync to Azure AD Connect
In this Micro Video tutorial you will learn the basics about Database Availability Groups and How to configure one using a live Exchange Server Environment. The video tutorial explains the basics of the Exchange server Database Availability grou…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

830 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question