04-20-2006 08:15 AM - edited 03-09-2019 02:40 PM
Hello,
We are running IOS12.4(5a) on a 2821 and have "ip inspect esmtp" enabled. We noticed that every day several emails end up in the postmaster account with
the following message:
"A mail message was not sent due to a protocol error.
500 Firewall Error
The message that caused this notification was:"
On closer inspection the router logfiles show:
Apr 20 08:54:19 loghost 830747: 810587: Apr 20 08:54:19.441 BST: %FW-3-SMTP_UNSUPPORTED_PARAMETER: Unsupported SMTP parameter (Data Size (> 20000000)) from initiator (172.16.1.6:3537)
But the emails in questions are just a few kB. So what is going wrong. This is especially disturbing because the users
don't get a notification that the email
has not been delivered.
Any ideas what is going wrong?
Thanks,
Doro
04-20-2006 08:58 AM
12.4(5a) was very buggy on a 2811 I installed a while back. Took TAC around a week to put together code to keep the router from rebooting constantly, however it was related to IPS DNS signatures. I would definately recommend upgrading IOS first, also setup the following parameters, per TAC;
Here are the settings commonly suggests for customers:
ip inspect max-incomplete high 10000
ip inspect max-incomplete low 9000
ip inspect one-minute high 7000
ip inspect one-minute low 6000
ip inspect tcp max-incomplete host 250
07-17-2012 03:07 AM
Hi,
Did you solve the problem?
We have the same situation on 2921 with c2900-universalk9-mz.SPA.151-4.M4.bin
Kind regards,
Michał
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: