Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 11 Aug 1999 16:41:14 -0500
From:      "David B. Aas" <dave@ciminot.com>
To:        "'Oscar Bonilla'" <obonilla@fisicc-ufm.edu>
Cc:        <questions@freebsd.org>
Subject:   RE: FW: Need consulting help with v3.2 firewall
Message-ID:  <000f01bee442$3cf646e0$0fc8a8c0@dave.ciminot.com>
In-Reply-To: <19990805154536.A885@fisicc-ufm.edu>

next in thread | previous in thread | raw e-mail | index | archive | help
Once again, Oscar you helped me out! Thanks for the assistance.

I cleaned up my rules, and set up the logging. That helped lots. My rules
had some problems with UDP from the internal net. I fixed those.

I set up a rule to allow all from any to any and ran my POP3 client on my
network workstations. It still does not work. I am thinking that it is
something to do with my DNS.

My console still gives me an error message "servername
popper[number]:(v2.53) unable to get canonical name of client, err=0"

Should I post my DNS settings? I have checked them over several times, and
don't see anything wrong. I had it set for a secondary DNS server, and I
changed it to a caching DNS server as a troubleshooting technique. I am
following the discussion in "The Complete FreeBSD".

Am I missing something?

Dave Aas
dave@ciminot.com

<snip>
>
> I would suggest deleting all rules and leaving just the natd stuff (if
> you need it) and an allow ip from any to any. See if that works (also
> try ping). If it doesn't you've crossed out the ruleset as a possible
> cause of trouble.  Something else is misconfigured. If it does work,
> change the ruleset to deny ip from any to any and slowly start adding
> rules until you have everything working.
>
> Regards,
>
> -Oscar



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?000f01bee442$3cf646e0$0fc8a8c0>