Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 4 Aug 1999 09:39:29 -0500
From:      "David B. Aas" <dave@ciminot.com>
To:        "'Ray Seals'" <rayseals@midwestis.com>, "'Oscar Bonilla'" <obonilla@fisicc-ufm.edu>, "'Thomas Uhrfelt'" <thomas.uhrfelt@plymovent.se>
Cc:        <questions@freebsd.org>
Subject:   Need consulting help with v3.2 firewall
Message-ID:  <000d01bede87$54afa120$0fc8a8c0@dave.ciminot.com>

next in thread | raw e-mail | index | archive | help
This is a multi-part message in MIME format.

------=_NextPart_000_000E_01BEDE5D.6BD99920
Content-Type: text/plain;
	charset="iso-8859-1"
Content-Transfer-Encoding: 7bit

Guys-

Thanks for your suggestions. I tried both. It is better, but I still can't
get through.

Oscar's suggestion substantially speeded up the response from the client.
The clients still cannot get through. The clients are Win95/98 with my
FreeBSD box set as primary DNS.

Ray's suggestion to telnet to my ISP's POP3 server works from the FreeBSD
box, but does not work from internal clients.

My FreeBSD box can do a "ping netscape.com" OK. My clients cannot.

I double and triple-checked my DNS. I originally had the FreeBSD box set up
as a Secondary DNS server. I changed it to be a caching DNS server off of my
ISP. That still didn't work.

I will attach my configuration files. I would appreciate any help.

Thanks.

Dave Aas
dave@ciminot.com

From Ray --------
You could try and manually pop the account:

Start a telnet session from you workstation and telnet to your pop server on
port 110.
System response: +OK UCB Pop server (version 1.6) at myhost starting.

Type "user {your user name here} [Enter]".
System respones: +OK Password required for {your name users}.
Type "pass {your password} [Enter]".
System respones: +OK {your user name} has {number} message (s) (xxx octet).

This would at least let you know that you can manually do a pop.  This works
with QPopper but I imagine it should be similar to other pop
implementations.

Ray

From Oscar--------
AFAICS you're not allowing your clients to do DNS queries... see below

(balance ommitted for brevity)

------=_NextPart_000_000E_01BEDE5D.6BD99920
Content-Type: application/octet-stream;
	name="named.boot"
Content-Transfer-Encoding: base64
Content-Disposition: attachment;
	filename="named.boot"

ZGlyZWN0b3J5IC9ldGMvbmFtZWRiCnByaW1hcnkgMC4wLjEyNy5pbi1hZGRyLmFycGEgbG9jYWxo
b3N0LnJldgpmb3J3YXJkZXJzIDIwNi4zMC4yNi4xMCAyMDYuMzAuMjcuMTMwCgoKI2NhY2hlCS4J
CQkJbmFtZWQucm9vdApzZWNvbmRhcnkgIHRvd25hbmRjb3VudHJ5Lm9yZyAgICAgIDIwNi4zMC4y
Ni4xMCBiYWNrdXAudG93bmFuZGNvdW50cnkub3JnCiNzZWNvbmRhcnkgIDI2LjMwLjIwNi5pbi1h
ZGRyLmFycGEgIDIwNi4zMC4yNi4xMCBiYWNrdXAudG93bmFuZGNvdW50cnktcmV2ZXJzZQojc2Vj
b25kYXJ5ICAwLjAuMTI3LmluLWFkZHIuYXJwYSAgICAyMDYuMzAuMjYuMTAJbG9jYWxob3N0LnJl
dgo=

------=_NextPart_000_000E_01BEDE5D.6BD99920
Content-Type: application/octet-stream;
	name="rc.conf"
Content-Transfer-Encoding: base64
Content-Disposition: attachment;
	filename="rc.conf"
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------=_NextPart_000_000E_01BEDE5D.6BD99920
Content-Type: application/octet-stream;
	name="rc.firewall"
Content-Transfer-Encoding: base64
Content-Disposition: attachment;
	filename="rc.firewall"
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------=_NextPart_000_000E_01BEDE5D.6BD99920--



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?000d01bede87$54afa120$0fc8a8c0>