My service provider just enabled TLS on their end. Because of this, our scanning appliances do not work correctly are the SMTP channel is encrypted. Is there a way on the PIX that I can block the STARTTLS SMTP command? This way I don't have to do anything with my email server or service provider. I am currently not using "inspect" for SMTP as the default policy was causing issues with my provider. Can I set up an "inspect" policy that just blocks STARTTLS and nothing else (not even checking anything else)?
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...