EofException:Timeout
-
Wallabybob,
First of the all, Thank you so much for your time and efforts in providing assistance voluntarily and i highly value and appreciate it. I didn't mean to bother you by sending PM but felt you would know about it as you answered a similar problem. But yes!, each problem differs and depends on various situations.
And as i introduced, i'm a newbie and i have been left for myself to figure out a yet complex network settings on pfsense which does not have proper labelling or any Wiki page explaining where the rules and subnets are for. So, i'm taking time to provide as much information for my problem as i could so that i don't confuse myself or others while asking questions.
Ok, i would keep to point. I have attached a logical network diagram which shows WAN>LAN>DMZ(OPT1) subnets and the mail server (in question today). And also the interfaces and how the network is setup in my server room. The previous one on the above post is the physical diagram which was not right i guess, as all the DMZ and LAN Switches are inside the firewall. There is no port forwarding on any IPs except a 1:1 WAN Mapping. I don't think Aktino is router, as my ISP provider said they have a direct connection from my ISP provider to Aktino box to the firewall.(I'm not sure why is that for then :( )
We don't have any laptop PC's in LOCAL users, those are thin clients on NIC cards connected to terminal servers which are again under the LAN subnet. All these local PC's are connected through patch boards.I have seen the firewall logs to see if the IP through which i'm trying to send email with attachment is blocked, but the status showed that my IP is allowed to pass through to the mail server (postal) through port 25. That should be true because, I'm able to send text lines in the emails and emails with attachments size less than 50kB.
The reason i mentioned SSH Connection was because i felt both the network connection timeout errors on the ssh and smtp timeout are interconnected somehow.
Well, the ssh connection i made was from one of the client pc's on LAN to Postal Mail sever through port 22 on PuTTY. After every 30sec, the connection aborts with an error message which says, "Network Error: Connection reset by peer" or "Network Error: Software caused connection to abort".The mail server interfaces are eth0:Public IP and eth1: Local IP.
Please let me know if there is anything more i need to provide which might help clearing the confusion.
And once again, thanks everyone for helping out.
![Physical Network Dia.png](/public/imported_attachments/1/Physical Network Dia.png)
![Physical Network Dia.png_thumb](/public/imported_attachments/1/Physical Network Dia.png_thumb)
Firewallrules.txt
mailerrorattachment.txt -
Thanks for the updated information. I felt as if I was thrown in the deep end of the swimming pool when I started in networks. The learning curve seemed very steep.
An ongoing frustration I have with the reporting on this issue is that I have to keep asking for the same information. Two examples:
-
I asked for the IP addresses of the pfSense interfaces. I can't see them ALL on your diagram.
-
I asked for the ssh command you have been using to access the mail server.
Because the pfSense box on your diagram didn't have the interface names close to the box it took me a while to see them. It looks to me that WAN is rl0, OPT1 is rl1 and LAN is bfe0. Correct?
Realtek interfaces, especially the early rl interfaces, have a reputation for poor quality. Does your pfSense system log report anything involving rl0 or rl1?
There are two paths from client PCs to the mail server. Do you get different results for your ssh session depending on which path you use? (Try ssh to the mail server LOCAL IP address, ssh 10.10.0.146 and ssh to the mail server "public" IP address, ssh 69.29.44.19). Does either session last more than two minutes after login?
On the mail server, what brand and model of NICs are used? (post output of shell command lspci) Is there anything in the system log reporting any event on the nterfaces? Hopefully you don't have old generation Realteks there.
-