cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
538
Views
0
Helpful
6
Replies

PIX Not Allowing SMTP from Outside Interface

auroratech
Level 1
Level 1

Hello, all. Here's the scenario: PIX 501 provides firewall/VPN services to office with the web/mail server on the inside. Mail and web work fine on the local LAN, and web and POP/IMAP work fine on the outside, but SMTP does not. It appears that all outbound mail traffic coming through the outside interface is blocked, so outside of the office folks can receive mail just fine, but can't send.

My current config is attached.

Many thanks, in advance, for any suggestions you may have.

6 Replies 6

fahad.sheikh
Level 1
Level 1

On the outside interface of your firewall apply a access-list to permit traffic the public ip of the mail server on the SMTP port. This should resolve your problem.

I believe I've already got that. From my posted config:

access-list outside-in permit tcp any host eq smtp

What do you mean by ? Is it the public IP of your mail server?

Yes, it is the public IP address of the mail server, which is also the IP address of the outside interface of the PIX.

Do you see any hit counts on the access-list for SMTP?

Not sure how I'd check that. Suggestions?

Review Cisco Networking products for a $25 gift card