• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Cannot block pop3 traffic [SOLVED]

Scheduled Pinned Locked Moved Firewalling
2 Posts 1 Posters 1.5k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • L
    lk
    last edited by Jan 13, 2011, 6:15 PM Jan 13, 2011, 11:13 AM

    hi all,
    as i'm not intended to use pop3 protocol to check mail on my groupware, so, for security related questions, i'm trying to block tcp traffic from wan area on 110 port via pfsense.
    other similar rules work, but there is no way to block pop3 session from wan.
    someone may explain me why?

    In attach you may see relative config images (nat & rule), lan net is 192.168.101.x, dmz is 192.168.201.x.  As you may see, i also enabled traffic logging, but firewall log does not register any packet block during a pop3 session from wan.
    hope someone may help, tnx, bye, luca.

    –----------------------------
    pfsense 1.2.2 vm on vmware server 2 with 3 eth card (wan, lan, dmz)
    in dmz i have a groupware vm
    pf1.jpg
    pf1.jpg_thumb
    pf2.jpg
    pf2.jpg_thumb

    1 Reply Last reply Reply Quote 0
    • L
      lk
      last edited by Jan 13, 2011, 6:19 PM Jan 13, 2011, 6:12 PM

      ok, i found the solution by myself.

      groupware has pop3 (110) and pop3/s (995) enabled, pfsense nats both of the ports to groupware server.

      on my PC I installed avast with virus mail protection.. avast intercepts my pop client request and automatically translates request to groupware 995 port.. so, both of them (telnet to 110 and pop mail client) have success via 995.
      blocking also 995 solved the question. Obviously telnet to 110 fails if you disable antivir mail check..

      tnx anyway, bye, luca.

      1 Reply Last reply Reply Quote 0
      2 out of 2
      • First post
        2/2
        Last post
      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
        This community forum collects and processes your personal information.
        consent.not_received