Re: Problems using STARTTLS off campus

2010-03-16 Thread Rob Tanner
Yep. That fixed it. Thanks. On 3/16/10 1:00 PM, "Brian Evans - Postfix List" wrote: > On 3/16/2010 3:55 PM, Rob Tanner wrote: >> Hi, >> ehlo cheshire >> 250-neskowin.linfield.edu >> 250-PIPELINING >> 250-SIZE 1500 >> 250-VRFY >> 250-ETRN >> 250-XXXA > > Firewall SMTP "fixup" that bre

Re: Problems using STARTTLS off campus

2010-03-16 Thread Wietse Venema
On-campus: ... > 250-STARTTLS ... Off-campus: > 250-XXXA CISCO fixup mode is an amazing technical achievement. It will XXX server words not on a whitelist (and as the "A" at the end demonstrates, it does this close to perfection). It will XXX client commands not on a whitelist, as

Re: Problems using STARTTLS off campus

2010-03-16 Thread Noel Jones
On 3/16/2010 2:55 PM, Rob Tanner wrote: Hi, This is a weird one. From on campus (from any 10.0.0.0/8 address), when I telnet to post 25 of the Postfix server and type in the ehlo start of the handshake, I expect and get the following response: ehlo beowulf 250-neskowin.linfield.edu 250-PIPELINI

Re: Problems using STARTTLS off campus

2010-03-16 Thread Brian Evans - Postfix List
On 3/16/2010 3:55 PM, Rob Tanner wrote: > Hi, > ehlo cheshire > 250-neskowin.linfield.edu > 250-PIPELINING > 250-SIZE 1500 > 250-VRFY > 250-ETRN > 250-XXXA Firewall SMTP "fixup" that breaks everything. Commonly seen in Cisco PIX routers/firewalls. Best option is to disable fixup. > 250 8B