My Oracle Support Banner

Remote Site Reporting Connection Reset Errors When Trying To Negotiate STARTTLS With Our MX MTAs - Error: [Errno 54] Connection reset by peer interface: 172.xx.xx.xxx reason: network error (Doc ID 2326887.1)

Last updated on NOVEMBER 19, 2018

Applies to:

Oracle Communications Messaging Server - Version 8.0.1 and later
Information in this document applies to any platform.

Goal

MS 8.0.1.2.0

Requesting some ideas on how to debug an issue being reported by a peer (remote) site trying to send mail to our domain ... they state that whenever they try to negotiate STARTTLS, they are seeing connection reset errors.

Error Messages as listed in our IronPort logs:

Thu Oct 26 10:30:24 2017 Info: Connection Error: DCID 3510811 domain: abc.com IP: 17.xxx.xx.xx port: 25 details: [Errno 54] Connection reset by peer interface: 172.xxx.xx.xxx reason: network error

We aren't receiving any other reports of issues, so it seems likely the problem is on their side.

Is there any higher level of debug output for TLS negotiation that could be enabled on our end? Or anything that could help identify why they are seeing these connection resets?


We have demonstrated with openssl s_client that there is no issue on our side but the remote site doesn't have that capability on the Ironport.
 

Solution

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Goal
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.