Article ID: 908864 - Last Review: October 25, 2007 - Revision: 1.3 Incoming mail flow stops, or the SMTP service fails when you try to fail over a node in Exchange Server 2003 or in Exchange 2000 Server after you install McAfee VirusScan EnterpriseOn This PageSYMPTOMSSymptom 1You install McAfee VirusScan Enterprise 8.0 or McAfee VirusScan Enterprise 8.0i on Microsoft Exchange Server 2003 or on Microsoft Exchange 2000 Server. When you do this, you may experience the following symptoms:
Symptom 2You install McAfee VirusScan Enterprise 8.0 or McAfee VirusScan Enterprise 8.0i on both nodes in an Exchange Server 2003 or an Exchange 2000 Server clustered environment. When you do this, you may experience the following symptoms:
Symptom 3You may see the following in the cluster log on a clustered Exchange Server 2003 computer or on a clustered Exchange 2000 Server computer:00000410.00001290::2007/05/15-14:15:54.966 Microsoft Exchange SMTP Server Instance <SMTP Virtual Server Instance – (EVS1)>: [EXRES]isalive failed in Connect Error Code: 10053. 00000410.00001290::2007/05/15-14:15:54.966 Microsoft Exchange SMTP Server Instance <SMTP Virtual Server Instance – (EVS1)>: [EXRES]DwProtocolCheckIsAlive failed. Will retry in 50 msec. CAUSEThese issues occur because the Access Protection feature in
these McAfee products blocks port 25. RESOLUTIONTo resolve these issues, disable the "Prevent mass mailing
worms from sending mail" rule in the Access Protection feature. To do this,
follow these steps. Important These steps may increase your security risk. These steps may also make your computer or your network more vulnerable to attack by malicious users or by malicious software such as viruses. We recommend the process that this article describes to enable programs to operate as they are designed to, or to implement specific program capabilities. Before you make these changes, we recommend that you evaluate the risks that are associated with implementing this process in your particular environment. If you choose to implement this process, take any appropriate additional steps to help protect your system. We recommend that you use this process only if you really require this process. Note The McAfee configuration settings are sometimes managed from a configuration server.
STATUSThese issues are known to occur when you install McAfee
VirusScan Enterprise 8.0 or McAfee VirusScan Enterprise 8.0i on Exchange Server
servers. MORE INFORMATIONIn McAfee VirusScan Enterprise, configuration can be managed
from a configuration server. In an Exchange Server clustered environment, the
passive node may lose the connection to the configuration server when the
passive node is offline for some time. In this scenario, the passive node reverts to the default settings for McAfee VirusScan Enterprise. By default, the Access Protection feature enables the "Prevent mass mailing worms from sending mail" rule. This rule blocks port 25. When port 25 is blocked, SMTP traffic and "IsAlive" checks cannot occur. For information about your hardware manufacturer, visit the following Web site: http://support.microsoft.com/gp/vendors/en-us
(http://support.microsoft.com/gp/vendors/en-us)
The third-party products that this
article discusses are manufactured by companies that are independent of
Microsoft. Microsoft makes no warranty, implied or otherwise, regarding the
performance or reliability of these products.
| Article Translations
|

Back to the top
