08-03-2006 06:17 AM - edited 02-21-2020 01:05 AM
We have a PIX 515E Firewall and the SMTP Banner is being changed to 220 ********
I need to disable this and I cannot use the 'no fixup protocol SMTP' command as it is not present in 7.1.
Any suggestions?
Regards,
Keyvan
Solved! Go to Solution.
08-03-2006 06:21 AM
This is done under the "class-map inspection_default" class-map in this version of PIX OS.
pls rate if helpful!
08-03-2006 06:21 AM
This is done under the "class-map inspection_default" class-map in this version of PIX OS.
pls rate if helpful!
08-03-2006 06:25 AM
hostname(config)# policy-map "PM-Name"
hostname(config-pmap)# class "class_name"
hostname(config-pmap-c)# no inspect esmtp
Hope this helps.
Chad
08-03-2006 07:01 AM
Hi Kevyan,
Please be informed that if you disable packet inspection, the PIX will not do any packet insepction enroute and may be a compromise in the security of the SMTP / ESMTP Daemon.
Hence, please disable ONLY, if its absolute necessity and you have other security measures in between.
An alternate strategy would be to run the PIX in the transparent mode.
Kind Regards,
Wilson Samuel
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide