From owner-freebsd-questions@FreeBSD.ORG Tue Jan 11 21:56:41 2005 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id B478A16A4CE; Tue, 11 Jan 2005 21:56:41 +0000 (GMT) Received: from mgw1.MEIway.com (mgw1.meiway.com [81.255.84.75]) by mx1.FreeBSD.org (Postfix) with ESMTP id C2FEB43D46; Tue, 11 Jan 2005 21:56:38 +0000 (GMT) (envelope-from LConrad@Go2France.com) Received: from VirusGate.MEIway.com (virusgate.meiway.com [81.255.84.76]) by mgw1.MEIway.com (Postfix Relay Hub) with ESMTP id 6B1E2471835; Tue, 11 Jan 2005 23:01:48 +0100 (CET) (envelope-from LConrad@Go2France.com) Received: from localhost (localhost.MEIWay.com [127.0.0.1]) by VirusGate.MEIway.com (Postfix) with SMTP id 68230386727; Tue, 11 Jan 2005 22:56:41 +0100 (CET) (envelope-from LConrad@Go2France.com) X-AV-Checked: Tue Jan 11 22:56:41 2005 virusgate.meiway.com Received: from mail.Go2France.com (ms1.meiway.com [81.255.84.73]) by VirusGate.MEIway.com (Postfix) with ESMTP id E9CC33866FB; Tue, 11 Jan 2005 22:56:36 +0100 (CET) (envelope-from LConrad@Go2France.com) Received: from tx2.Go2France.com [24.227.147.226] by mail.Go2France.com with ESMTP (SMTPD32-7.07) id A9367AE40066; Tue, 11 Jan 2005 22:46:30 +0100 Message-Id: <6.1.1.1.2.20050111154955.03efd268@81.255.84.73> X-Sender: LConrad@Go2France.com@81.255.84.73 X-Mailer: QUALCOMM Windows Eudora Version 6.1.1.1 Date: Tue, 11 Jan 2005 15:56:29 -0600 To: freebsd-questions@freebsd.org, freebsd-net@freebsd.org From: Len Conrad In-Reply-To: <20050110101200.W13168@mail.foolishgames.com> References: <6.1.1.1.2.20050110103857.045a9a68@81.255.84.73> <20050110101200.W13168@mail.foolishgames.com> Mime-Version: 1.0 Content-Type: text/plain; charset="us-ascii"; format=flowed Subject: Re: buildup of Windows time_wait talking to fbsd 4.10 X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 11 Jan 2005 21:56:41 -0000 >>We have a windows mailserver that relays its outbound to a fbsd >>gateway. We changed to a different fbsd gateway running 4.10. Windows >>then began having trouble sending to 4.10. Windows "netstat -an" >>shows dozens of lines like this: >> >> source IP desitination IP >>====================================================================== >> TCP 10.1.16.3:1403 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1407 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1415 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1419 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1435 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1462 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1470 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1473 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1478 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1493 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1504 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1507 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1508 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1521 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1526 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1546 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1550 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1568 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1571 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1589 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1592 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1616 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1620 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1629 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1644 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1647 192.168.200.59:25 TIME_WAIT >> TCP 10.1.16.3:1654 192.168.200.59:25 TIME_WAIT >> >>Eventually, the windows SMTP logs line like "cannot connect to remote IP" >>or "address already in use" because no local tcp/ip sockets are >>available, we think. >> >>The new gateway/fbsd 4.10 "sockstat -4" shows no corresponding tcp >>connections when the Windows server is showing as above. On the fbsd >>4.10 machines, smtp logs, syslog, and dmesg show no errors. >> >>We switch the windows box to smtp gateway towards the old box/fbsd 4.7, >>all is cool. >> >>Suggestions with how to proceed debugging, please. >> >>I'm trying to get the dmesg.boot for the 4.7 and 4.10 boxes now, sorry. >> >>Len > >Just off the top of my head... > >You mentioned the freebsd machine is the gateway. Do you have a firewall >on the host blocking connections from the windows machine? the two mail servers that send outbound to the fbsd gateway are on the subnet, same rules. the firewall is "outside" the subnets of the mail servers and gateways. We haven't put a sniffer yet. there's none on windows boxes, and tcpview on the fbsd boxes. We going to start changing NIC model/brands. thanks Len _____________________________________________________________________ http://IMGate.MEIway.com : free anti-spam gateway, runs on 1000's of sites