OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
RE: Weird slowness

From: Adam Clark (Adam.Clarkngv.vic.gov.au)
Date: Thu Sep 23 2004 - 19:19:56 CDT


Bingo.

I forgot about how the PIX screws with things.
Shame on them.

Adam

> -----Original Message-----
> From: Nicolas Riendeau [mailto:knightristop.com]
> Sent: Friday, 24 September 2004 10:14 AM
> To: Adam Clark
> Subject: Re: Weird slowness
>
> Hi!
>
> Adam Clark wrote:
> > Which is fairly speedy and looks fine
> >
> > If I telnet from outside of our DMZ I get:
> > 220 ***********************************
> > quit
> > 502 Error: command not implemented
> >
> > There is a delay of about a second or so.
> >
> > Any ideas?
>
> You have a Cisco Pix firewall with SMTP protocol fixup enabled...
>
> With that enabled, the Pix acts as some sort of proxy and
> this causes a lot of problem for many MTAs including Postfix...
>
> I would suggest that you either disable it (smtp protocol
> fixup) or ask that it be disabled as Postfix is secure enough
> out of the box not to require this...
>
> Have a nice day!
>
> Nick
>