On Mon, 2010-02-15 at 11:45 +0100, Ralf Hildebrandt wrote:
> * Serge Fonville <serge.fonvi...@gmail.com>:
> > Hi,
> > 
> > I noticed with a couple of mail servers that the smtp greeting
> > contains 220 followed by a lot of asterisks.
> 
> CISCO PIX.
> 
> > When I do a check using mxtoolbox I get "Warning - Reverse DNS does
> > not match SMTP Banner"
> > 
> > How do I assure that the normal text is displayed instead of the asterisks?
> 
> Disable the smtp protocol fixup feature in the PIX.
> 

Can someone share a  good reference that says that smtp-protocol-fixup
can be safely disabled without compromising the security. 

Apparently the Cisco guys themselves dont own up to their bug and they
say disabling anything is at "ones own risk". 

That is enough to get the boot from the (so called! )  security team. 









Reply via email to