Firewall Wizards mailing list archives
Re: POP3 and SMTP slow on Linux since we installed a PIX
From: Matt Dunn <matt () electrocentric com>
Date: Sat, 14 Aug 1999 01:04:41 -0400
I had a similar problem with Checkpoint on the SMTP side, and it was because sendmail was trying to do a reverse lookup on the connection, and since the hosts are NAT'd, it never found them, and timed out. The quick fix for me was in sendmail.cf, change the default setting for the Timout.ident option from 30s or whatever it is to 1s. I'm not positive what the fix for the POP server would be (depends on the server, etc.), but I imagine it's probably something similar, especially if you're using NAT (which is probably true). Dave, I hope this helps. This brings me to _my_ question.... Given a Private Network doing many->1 NAT, and DMZ doing 1->1 NAT, where the private network uses DHCP/WINS for IP assignment and name resolution (making it difficult to keep accurate records on the DMZ side), what's the best way to allow sendmail to successfully run its ident without having to timeout? It just doesn't sit right with me to neuter part of the authentication process for anyone connecting to port 25, simply because the connections take unnecessarily long internally. Thanks in advance, -Matt At 04:11 PM 8/13/99 -0400, you wrote:
We installed a PIX firewall and ever since POP and SMTP have been slow to establish a connection to the mail server on the DMZ from the inside. Has anyone here seen the same symptom? TIA Dave
Current thread:
- POP3 and SMTP slow on Linux since we installed a PIX Salatino, Dave (Aug 13)
- Re: POP3 and SMTP slow on Linux since we installed a PIX Marcus J. Ranum (Aug 14)
- Re: POP3 and SMTP slow on Linux since we installed a PIX Siglite (Aug 14)
- Re: POP3 and SMTP slow on Linux since we installed a PIX Matt Dunn (Aug 14)
- Re: POP3 and SMTP slow on Linux since we installed a PIX Eric Vyncke (Aug 14)
- Re: POP3 and SMTP slow on Linux since we installed a PIX Mike Barkett (Aug 17)
- RE: POP3 and SMTP slow on Linux since we installed a PIX gordon . douglass (Aug 15)
- <Possible follow-ups>
- Re: POP3 and SMTP slow on Linux since we installed a PIX Robert Graham (Aug 14)
- RE: POP3 and SMTP slow on Linux since we installed a PIX Frank W. Keeney (Aug 17)
- RE: POP3 and SMTP slow on Linux since we installed a PIX sean . kelly (Aug 17)