<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Enabling SMTP port for mail security appliance in the DMZ in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72780#M5555</link>
    <description>Still no attachments.&lt;BR /&gt;Retransmissions are usually indicative of lower-level networking issues.&lt;BR /&gt;If you experience the issue in R80.10 but not in R75.47 with the same hardware, it could easily be network driver related.&lt;BR /&gt;Please engage with the TAC on this issue.</description>
    <pubDate>Tue, 21 Jan 2020 01:52:25 GMT</pubDate>
    <dc:creator>PhoneBoy</dc:creator>
    <dc:date>2020-01-21T01:52:25Z</dc:date>
    <item>
      <title>Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/63969#M4890</link>
      <description>&lt;P&gt;Is there a reason why a mail security appliance that's located at the DMZ cannot send mail to outside of my organization? Port 25 is enabled on the firewall. SmartView tracker does not show dropped smtp traffic from the host. Even a simple telnet from the appliance on port 25 is dropped.&lt;/P&gt;&lt;P&gt;Any suggestion would greatly be appreciated.&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 30 Sep 2019 14:38:24 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/63969#M4890</guid>
      <dc:creator>PRICE_ETIENNE</dc:creator>
      <dc:date>2019-09-30T14:38:24Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64123#M4893</link>
      <description>Does a tcpdump show the traffic even entering the Security Gateway?</description>
      <pubDate>Tue, 01 Oct 2019 23:02:38 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64123#M4893</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-10-01T23:02:38Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64159#M4896</link>
      <description>&lt;P&gt;It does not look like the traffic is leaving the firewall. All I see on the tcpdump is TCP Retransmission error to the destination SMTP server.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Ex.&lt;/P&gt;&lt;P&gt;6 30.999253 21.168.1.101 173.194.204.26 TCP 74 [TCP Retransmission] 34749 → 25 [SYN] Seq=0 Win=14600 Len=0 MSS=1460 SACK_PERM=1 TSval=1483731605 TSecr=0 WS=4&lt;/P&gt;</description>
      <pubDate>Wed, 02 Oct 2019 13:03:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64159#M4896</guid>
      <dc:creator>PRICE_ETIENNE</dc:creator>
      <dc:date>2019-10-02T13:03:00Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64160#M4897</link>
      <description>&lt;P&gt;What about the access policy rule for DMZ with service&amp;nbsp;SMTP ?&lt;/P&gt;</description>
      <pubDate>Wed, 02 Oct 2019 13:23:34 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64160#M4897</guid>
      <dc:creator>G_W_Albrecht</dc:creator>
      <dc:date>2019-10-02T13:23:34Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64199#M4899</link>
      <description>This probably needs some fw ctl debug to see where it's getting dropped in the process.&lt;BR /&gt;Something like fw ctl debug -m fw + drop with all the other necessary commands.&lt;BR /&gt;See: &lt;A href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk98799" target="_blank"&gt;https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk98799&lt;/A&gt;&lt;BR /&gt;</description>
      <pubDate>Wed, 02 Oct 2019 17:30:55 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64199#M4899</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2019-10-02T17:30:55Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64223#M4900</link>
      <description>&lt;P&gt;Check SmartLog for Anti-Bot blade entries calling out possibly malicious e-mail or SPAM from your DMZ appliance.&amp;nbsp;&lt;/P&gt;&lt;P&gt;The situation sounds somewhat similar to another community discussion we are having:&amp;nbsp; "Having issues with firewall dropping mail as spam"&amp;nbsp; &lt;A href="https://community.checkpoint.com/t5/IPS-Anti-Virus-Anti-Bot-Anti/Having-issues-with-firewall-dropping-mail-as-spam/m-p/63874#M1855" target="_blank"&gt;https://community.checkpoint.com/t5/IPS-Anti-Virus-Anti-Bot-Anti/Having-issues-with-firewall-dropping-mail-as-spam/m-p/63874#M1855&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 02 Oct 2019 20:48:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/64223#M4900</guid>
      <dc:creator>Dale_Lobb</dc:creator>
      <dc:date>2019-10-02T20:48:01Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72724#M5551</link>
      <description>&lt;P&gt;How about this issue ? I met the SMTP issue after upgrade R80.10 from R75.47.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;This issue cased a lot of email have been delayed, even some emails can’t be received. It affects customer’s business seriously.&lt;/P&gt;
&lt;P&gt;&amp;nbsp; I tried to capture packet form new appliance, no found abnormal SMTP traffic. After rollback to old checkpoint appliance, the SMTP traffic is normal.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;New appliance only enable firewall blade.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have uploaded capture traffic, the traffic is not normal in red.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 20 Jan 2020 14:06:45 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72724#M5551</guid>
      <dc:creator>weimin</dc:creator>
      <dc:date>2020-01-20T14:06:45Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72772#M5553</link>
      <description>No attachments to your post.&lt;BR /&gt;Also, if it's firewall only (no other blades), this should be a relatively simple issue to troubleshoot. &lt;BR /&gt;What precise rules (provide screenshot) are being used to permit access via SMTP?</description>
      <pubDate>Mon, 20 Jan 2020 22:30:51 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72772#M5553</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-20T22:30:51Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72779#M5554</link>
      <description>&lt;P&gt;I have the policy that any to mail serve ip address service any policy.&amp;nbsp; See attached screenshot.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Mail server ip: 202.38.134.236 , Tcpdump found lot of retransmission, attached screenshot.&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;And I tried to&amp;nbsp;fw ctl zdebug + drop | grep 202.38.134.236 ,but no found.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Do we have any specific setting relevant SMTP&amp;nbsp; on R80.X verion and above ?&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 21 Jan 2020 00:36:31 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72779#M5554</guid>
      <dc:creator>weimin</dc:creator>
      <dc:date>2020-01-21T00:36:31Z</dc:date>
    </item>
    <item>
      <title>Re: Enabling SMTP port for mail security appliance in the DMZ</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72780#M5555</link>
      <description>Still no attachments.&lt;BR /&gt;Retransmissions are usually indicative of lower-level networking issues.&lt;BR /&gt;If you experience the issue in R80.10 but not in R75.47 with the same hardware, it could easily be network driver related.&lt;BR /&gt;Please engage with the TAC on this issue.</description>
      <pubDate>Tue, 21 Jan 2020 01:52:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/Enabling-SMTP-port-for-mail-security-appliance-in-the-DMZ/m-p/72780#M5555</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-01-21T01:52:25Z</dc:date>
    </item>
  </channel>
</rss>

