Firewall Wizards mailing list archives

RE: POP3 and SMTP slow on Linux since we installed a PIX


From: "Frank W. Keeney" <FKeeney () hsa com>
Date: Mon, 16 Aug 1999 08:45:42 -0700

Set the ident timeout to zero on the Linux box and that will solve the
problem.

++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
Frank Keeney, Network Services, Home Savings of America
+1 626-814-5080 mailto:fkeeney () hsa com / mailto:frank () pasadena net
++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++


        ----------
        From:  Robert Graham [SMTP:robert_david_graham () yahoo com]
        Sent:  Friday, August 13, 1999 10:24 PM
        To:  Salatino, Dave; 'firewall-wizards () nfr net'
        Subject:  Re: POP3 and SMTP slow on Linux since we installed a
PIX

        It is because you are blocking incoming 113/identd.

        When contacted, the e-mail server first opens up a reverse
connect to identd in
        order to log that information. It must first wait for the
connection to time
        out before it continues. Annoying, isn't it?

        Anyway, I describe this in more detail in my "firewall-seen" FAQ
at:
        http://www.robertgraham.com/pubs/firewall-seen.html#slow-email

        --- "Salatino, Dave" <DSalati () cvps com> wrote:
        > We installed a PIX firewall and ever since POP and SMTP have
been slow to
        > establish a connection to the mail server on the DMZ from the
inside. Has
        > anyone here seen the same symptom?


        



Current thread: