Hi all,

Well I am sending this to the list because my problem is when it goes
through the FW.

Internally everything works fine.  Exchange IMS (that's MS SMTP server)
forwards e-mail msgs to the Firewall and the msgs get delivered to the
Internet recipients.  When the users sends e-mail within the secure domain
everything works fine,(example: [EMAIL PROTECTED] sends a message to
[EMAIL PROTECTED]) using any simple POP3 client (like Outlook Express) or
whatever.

Remote Internet users can pop out (POP3) the e-mail msgs from Exchange
(again through the FW) no problems.

But when the same remote Internet users use that same Exchange SMTP server
(always through the FW)  this does not work (well kinda secure against spam,
but I will address the security side of it after with the client (same thing
with POP3), I have to do my prepare my speech first based on test results).
According to their policy, any e-mail messages going through the Internet
should not be considered confidential, well they might change their ming
when I show them a couple of the CEO's mail messages.

So the problem is:

If a remote Internet users address the e-mail to a recipient whom belongs to
their secure domain user, well they get:
local error,abort error.  (they have setup the FW's FQDN as the SMTP relay
server within the e-mail client s/w)

If the same user address the e-mail to a user outside the Internet domain,
the user gets a MTA does not relay mail error message.  FW is a proxy and
proxies SMTP requests.  That is good actually since I guess this will work
against spamming.

So as a result of the local error abort error first mentioned, the ISP
sendmail can not forward mail to my client's FW because the Exchange SMTP
(or the FW) will not accept it.  The ISP configured the FW as the MAIL
exchanger (MX record and all that stuff).

I tested the same thing telneting to port 25 of the fw using the SMTP
commands, and get the local error, abort error and the MTA relay problems
depending on who the recipient is!  so it is the same result as if I was
using an e-mail client from the Internet.
Jean Morissette

-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to