
I agree with MrDenny. It seems odd that the mail server would be sending RST packets to clients just on this subnet. I suspect that the packets are actually coming from the DMZ firewall. You can determine this by looking at the MAC addresses in the packets. The IP address will not change but the MAC addresses will in the packets. Capture some packets at the mail server and filter for traffic to/from the problem VLAN. Capture also at a client on the VLAN. Are you certain that no changes were made to firewall filtering rules?

Yes. No changes were made, but I still check to see if anything was different. This problem started this past Friday, before that everything was working fine.

What’s different to this subnet compared to your other subnets?? Something’s either gone wrong or has been changed since it has been working previously!!
You can try setting a telnet session from your firewall which faces the DMZ and work your way back to the subnet, doing the same thing on each firewall.
What Firewall are you using? There are different ways that you can trace iterfaces etc to see where the trafficis being dropped.
Post up a diagram if you can do (change the IPs obviously) and we can go through it step-by-step!

















