Marco Gaiarin <marcogaio@???> (Do 11 Jun 2015 15:53:07 CEST):
>
> I've just upgrade a server from debian squeeze to debian wheezy, using a
> custom config file i use in my servers; i've changed a little the config
> file, mostly adding STARTTLS with auth.
….
> I've tried with a client (Thunderbird ESR latest version, Windows 7) and a
> tshark dump depicted:
>
> 0.000000 10.27.2.25 -> 10.27.1.3 TCP 66 49989 > 587 [SYN] Seq=0 Win=8192 Len=0 MSS=1460 WS=256 SACK_PERM=1
> 0.000019 10.27.1.3 -> 10.27.2.25 TCP 66 587 > 49989 [SYN, ACK] Seq=0 Ack=1 Win=14600 Len=0 MSS=1460 SACK_PERM=1 WS=128
> 0.000384 10.27.2.25 -> 10.27.1.3 TCP 60 49989 > 587 [ACK] Seq=1 Ack=1 Win=65536 Len=0
> 5.001534 10.27.1.3 -> 10.27.2.25 SMTP 127 S: 220 stregatto.pp.lnf.it ESMTP Exim 4.80 Thu, 11 Jun 2015 15:25:59 +0200
> 5.003000 10.27.2.25 -> 10.27.1.3 SMTP 73 C: EHLO [10.27.2.25]
> 5.003069 10.27.1.3 -> 10.27.2.25 TCP 54 587 > 49989 [ACK] Seq=74 Ack=20 Win=14720 Len=0
> 5.003407 10.27.1.3 -> 10.27.2.25 SMTP 184 S: 250-stregatto.pp.lnf.it Hello [10.27.2.25] [10.27.2.25] | 250-SIZE 26214400 | 250-8BITMIME | 250-PIPELINING | 250-STARTTLS | 250 HELP
> 5.004375 10.27.2.25 -> 10.27.1.3 SMTP 64 C: STARTTLS
>
> note the 5 seconds between the TCP handshake and the SMTP banner printout.
This can be the rfc1413 timeout. Check your config for
rfc1413_query_timeout and set this to 0s (or add this option, since the
default value is 5s).
Linux probably just refuses the connection, while windows drops the
connection attempts, leading to a timeout.
> Someone can give me a clue on how to debug that issue? I really don't now
> where to hit my head...
You may tcpdump/tshark trace the ident protocol port 113/tcp.
Best regards from Dresden/Germany
Viele Grüße aus Dresden
Heiko Schlittermann
--
SCHLITTERMANN.de ---------------------------- internet & unix support -
Heiko Schlittermann, Dipl.-Ing. (TU) - {fon,fax}: +49.351.802998{1,3} -
gnupg encrypted messages are welcome --------------- key ID: F69376CE -
! key id 7CBF764A and 972EAC9F are revoked since 2015-01 ------------ -