Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 3 Sep 2000 15:39:17 -0700
From:      "Crist J . Clark" <cjclark@reflexnet.net>
To:        Gabriel Ambuehl <gabriel_ambuehl@buz.ch>
Cc:        questions@FreeBSD.ORG
Subject:   Re: Strange behaviour of IPFilter...
Message-ID:  <20000903153917.N62475@149.211.6.64.reflexcom.com>
In-Reply-To: <8688272028.20000903121705@buz.ch>; from gabriel_ambuehl@buz.ch on Sun, Sep 03, 2000 at 12:17:05PM %2B0200
References:  <8688272028.20000903121705@buz.ch>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sun, Sep 03, 2000 at 12:17:05PM +0200, Gabriel Ambuehl wrote:
> Hello
> I successfully got IPF and IPNat working for most services (prior to
> this, I used ipfw/natd). However, outgoing SMTP to *some* hosts is fucking slow
> (if I disable IPFilter, they work as they usually do), it seems to
> happen on the firewall as well as on the boxes behind it which use it
> as NAT gateway.

Watch for incoming 'auth' connections from these servers. The SMTP
might not be completing until the ident attempt times out. If this is
unacceptable, you can have the firewall do a "dummy" response to all
idents or have the firewall reject the attempts.
-- 
Crist J. Clark                           cjclark@alum.mit.edu


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20000903153917.N62475>