Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 10 Oct 2001 00:10:11 -0700
From:      "Crist J. Clark" <cristjc@earthlink.net>
To:        freebsd-questions@FreeBSD.ORG
Cc:        leblanc+freebsd@acadia.ne.mediaone.net
Subject:   Re: ipfw question - hostname/address spec?
Message-ID:  <20011010001011.F387@blossom.cjclark.org>
In-Reply-To: <20011009145144.C64668@acadia.ne.mediaone.net>; from leblanc%2Bfreebsd@acadia.ne.mediaone.net on Tue, Oct 09, 2001 at 02:51:45PM -0400
References:  <20011004071834.A2458@acadia.ne.mediaone.net> <20011004135129.E297@blossom.cjclark.org> <20011009005629.D589@acadia.ne.mediaone.net> <20011009035651.N350@blossom.cjclark.org> <20011009145144.C64668@acadia.ne.mediaone.net>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, Oct 09, 2001 at 02:51:45PM -0400, Louis LeBlanc wrote:
> On 10/09/01 03:56 AM, Crist J. Clark sat at the `puter and typed:
> > [snip]
> > 
> > /etc/rc.firewall would be good.
> 
> Ok, you asked for it . . .

[snip]

> > If DNS works fine once the system is up, but doesn't work when running
> > the rc.firewall script, it sure sounds like you are killing your own
> > lookups due to the rule ordering.
> 
> It doesn't work at all.  Not even via direct IP.

Hmmm?

> Thanks for your help.  I'm sure to learn something useful in all this.
> Which is the point, I guess.

[snip]

I can't reproduce the problem and it does look like DNS lookups should
be working by the time the SMTP and NNTP rules are reached. I'm not
sure what is happening here. You could try adding some logging to see
what is going on in the ruleset. It also may be some other strange DNS
interaction.
-- 
Crist J. Clark                           cjclark@alum.mit.edu
                                         cjclark@jhu.edu
                                         cjc@freebsd.org

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20011010001011.F387>