Messaging Gateway

 View Only
  • 1.  TCP Connection limits

    Posted Jan 27, 2010 10:32 AM
    I've been told that the scanner has a limit of 5000 inbound connections at any given time.  I am seeing  Message Rejected by MTA in my Message Audit logs, for trusted senders.  I'm wondering if my Scanner is running into the 5000 connection limit.   We are a fairly large site.  Two scanners at this location see 40 million spam per day. I have a case open, but I thought I'd ask the community as well.

    From Support login, I've run a netstat -n > file command and have imported it into Excel.  A piviot table shows

    State DNS-Local STMP In Loopback Other SMTP Out Grand Total
    CLOSE_WAIT   8       8
    CLOSING   39       39
    ESTABLISHED 5 1471 28 8 6 1518
    FIN_WAIT1   270       270
    FIN_WAIT2   40       40
    LAST_ACK   13       13
    SYN_RECV   90       90
    SYN_SENT         1 1
    TIME_WAIT   6275       6275
    Grand Total 5 8206 28 8 7 8254

    Q: Does connections in the Time_Wait status contribute to the 5000 connection limit?
    Q: Is it possible to reduce the time connections spend in Time_Wait?  I am aware of the STMP / Advanced / Inbound "Session Timeout" setting but I believe that this is idle time between verbs during an open connection (HELO/Mail from/Rcpt to/ etc), and would not affect TCP/IP session timeouts.



  • 2.  RE: TCP Connection limits

    Posted Jan 27, 2010 10:35 AM
    Sorry about that table, here is a image of it
    PiviotTablel.JPG


  • 3.  RE: TCP Connection limits

    Posted Jan 27, 2010 10:55 AM
    I am wondering if the "Message rejected by MTA" entries in your Audit logs is due to the reason described in this KB article:

    http://service1.symantec.com/SUPPORT/ent-gate.nsf/docid/2009101313280854

    Regards,

    Adnan


  • 4.  RE: TCP Connection limits

    Posted Feb 22, 2010 08:49 PM
    Did you get answer to your question?  I would appreciate if you can provide some feedback.

    Thanks

    Adnan