Mail Server Help
 
Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
User Name:
Password:
Remember me
Go Back   Dev Shed ForumsSystem AdministrationMail Server Help

Reply
Add This Thread To:
  Del.icio.us   Digg   Google   Spurl   Blink   Furl   Simpy   Y! MyWeb 
Thread Tools Search this Thread Rate Thread Display Modes
 
Unread Dev Shed Forums Sponsor:
  #1  
Old October 7th, 2004, 04:14 PM
The Donkey The Donkey is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Oct 2004
Location: Columbia, SC
Posts: 14 The Donkey User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 2 h 14 m 18 sec
Reputation Power: 0
Client connection to ipop3d deamon takes 30 seconds to complete!

I have Postfix installed on my Linux box and ipop3d as my post office prog. xinetd handles the pop3 connection. When my clients connect to check their mail, they connect, but then it takes 30 seconds to get their mail and disconnect. I am not talking download time here. I am talking negotiation/connection time. It appears that xinetd is holding up the connection for some reason.

All the clients are on a LAN and on the same subnet as the main server (different IP than the clients but on same subnet).

The IP for the clients are explicitly allowed in /etc/hosts and in the pop3 config in xinetd. The connection works, but it takes too long!

I have tried it with Shorewall off and on and that doesn't affect anything. Can anyone shed some light on why the connection/negotiation is taking this long?

Thanks in advance!

Reply With Quote
  #2  
Old October 27th, 2004, 03:19 PM
obelisk obelisk is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Oct 2004
Posts: 1 obelisk User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: < 1 sec
Reputation Power: 0
Ident!!

i've had this problem before. your mail server is probably being NATted by a firewall/router. ident requests are being stealthed by the router and are taking this long to timeout. i have set my firewalls to send a tcp reset to anything that comes in on port 113 (the ident port) it is important that you don't simply drop the port 113 packets and that they are actually sent a tcp reset.

hope this helps,
ob

Reply With Quote
  #3  
Old October 27th, 2004, 05:00 PM
The Donkey The Donkey is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Oct 2004
Location: Columbia, SC
Posts: 14 The Donkey User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 2 h 14 m 18 sec
Reputation Power: 0
I am using Shorewall as my Firewall. What rule/config do I need to look for?

Thanks in advance!

Reply With Quote
  #4  
Old October 31st, 2004, 09:43 AM
alexgreg's Avatar
alexgreg alexgreg is offline
Full Access
Dev Shed Regular (2000 - 2499 posts)
 
Join Date: Jun 2000
Location: London, UK
Posts: 2,019 alexgreg User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 3 sec
Reputation Power: 11
(from https://www.redhat.com/archives/guinness-list/2001-July/msg00015.html)

"In /etc/xinetd.d/ipop3, try commenting out the lines for log_on_success
and log_on_failure. Currently they are set to log 'USERID'."

After doing this, you'll need to restart xinetd:

Code:
service xinetd restart
__________________
Alex
(http://www.alex-greg.com)

Reply With Quote
  #5  
Old November 1st, 2004, 11:21 AM
The Donkey The Donkey is offline
Registered User
Dev Shed Newbie (0 - 499 posts)
 
Join Date: Oct 2004
Location: Columbia, SC
Posts: 14 The Donkey User rank is Just a Lowly Private (1 - 20 Reputation Level) 
Time spent in forums: 2 h 14 m 18 sec
Reputation Power: 0
Quote:
Originally Posted by alexgreg
(from https://www.redhat.com/archives/guinness-list/2001-July/msg00015.html)

"In /etc/xinetd.d/ipop3, try commenting out the lines for log_on_success
and log_on_failure. Currently they are set to log 'USERID'."

After doing this, you'll need to restart xinetd:

Code:
service xinetd restart


That did it. Thanks a million.

Reply With Quote
Reply

Viewing: Dev Shed ForumsSystem AdministrationMail Server Help > Client connection to ipop3d deamon takes 30 seconds to complete!


Thread Tools  Search this Thread 
Search this Thread:

Advanced Search
Display Modes  Rate This Thread 
Rate This Thread:


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
View Your Warnings | New Posts | Latest News | Latest Threads | Shoutbox
Forum Jump


Forums: » Register « |  User CP |  Games |  Calendar |  Members |  FAQs |  Sitemap |  Support | 
  
 





© 2003-2008 by Developer Shed. All rights reserved. DS Cluster 3 hosted by Hostway