From owner-freebsd-questions Sat Mar 9 11:57:26 2002 Delivered-To: freebsd-questions@freebsd.org Received: from vulcan.rsasecurity.com (vulcan.rsasecurity.com [204.167.114.130]) by hub.freebsd.org (Postfix) with SMTP id 0BFA637B419 for ; Sat, 9 Mar 2002 11:57:22 -0800 (PST) Received: from no.name.available by vulcan.rsasecurity.com via smtpd (for hub.FreeBSD.org [216.136.204.18]) with SMTP; 9 Mar 2002 19:56:53 UT Received: from ebola.securitydynamics.com (ebola.securid.com [192.80.211.4]) by sdtihq24.securid.com (Pro-8.9.3/Pro-8.9.3) with ESMTP id NAA18566 for ; Sat, 9 Mar 2002 13:36:00 -0500 (EST) Received: from spirit.dynas.se (localhost [127.0.0.1]) by ebola.securitydynamics.com (8.10.2+Sun/8.9.1) with SMTP id g29IaMT26606 for ; Sat, 9 Mar 2002 13:36:23 -0500 (EST) Received: (qmail 29079 invoked from network); 9 Mar 2002 18:36:21 -0000 Received: from explorer.rsa.com (HELO mikko.rsa.com) (10.81.217.59) by spirit.dynas.se with SMTP; 9 Mar 2002 18:36:21 -0000 Received: (from mikko@localhost) by mikko.rsa.com (8.11.6/8.11.6) id g29IaJQ96457; Sat, 9 Mar 2002 10:36:19 -0800 (PST) (envelope-from mikko) Date: Sat, 9 Mar 2002 10:36:19 -0800 (PST) From: Mikko Tyolajarvi Message-Id: <200203091836.g29IaJQ96457@mikko.rsa.com> To: tdv94ped@cs.umu.se Cc: questions@freebsd.org Orig-To: Paul Everlund Subject: Re: Reverse DNS timeouts before connection? Newsgroups: local.freebsd.questions References: <20020304105431.A36025@freeze.org> <3C8950BA.39FD1D78@cs.umu.se> Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG In local.freebsd.questions you write: >Seems to be a common question here, those reverse DNS lookup >problems, and it has now happen to me too, so therefore I'm >hoping someone can help me out. All, I hope, info needed are >below: >I'm running FreeBSD 4.5 as a firewall, with pppoe (netgraph), >ipfw and natd. I have DynDNS which is everlund.homeip.net >with wildcard. >ed0 => tun0 => out to the internet. >ed1 = 192.168.0.1 and 192.168.0.2 => to my internal network. >Windows 2k, on my internal network, have IP 192.168.0.4. >/etc/rc.conf [... snip ...] >/etc/hosts > 127.0.0.1 localhost.everlund.homeip.net localhost > 192.168.0.1 fw.everlund.homeip.net fw server > 192.168.0.2 fw.everlund.homeip.net fw server >/etc/resolv.conf > domain everlund.homeip.net > nameserver 10.0.0.1 > nameserver 10.0.0.2 [...] >When doing a 'telnet 192.168.0.1' from Windows I get following >doing 'ps -U root | grep inetd' in FreeBSD: > 241 ?? S 0:00.05 inetd: wrapping [192.168.0.4] (inetd) >Then it takes about a minute before I can login. From the out- [...] Your freebsd box is trying to do a reverse lookup of the NT box (.4), and from what I see above, nothing is providing this information, so you have to wait for DNS to time out. To make sure, run "tcpdump" on your outgoing interface while connecting (and use "-n", as your reverse-dns is hosed :) The Q&D fix is to add it to /etc/hosts. $.02, /Mikko -- Mikko Työläjärvi_______________________________________mikko@rsasecurity.com RSA Security To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message