From owner-freebsd-questions Fri Oct 26 5:48: 4 2001 Delivered-To: freebsd-questions@freebsd.org Received: from cartman.private.techsupport.co.uk (cabletel1.cableol.net [194.168.3.4]) by hub.freebsd.org (Postfix) with ESMTP id F038D37B401 for ; Fri, 26 Oct 2001 05:48:01 -0700 (PDT) Received: from ceri by cartman.private.techsupport.co.uk with local (Exim 3.31 #1) id 15x6Np-0005Pl-00; Fri, 26 Oct 2001 13:46:45 +0100 Date: Fri, 26 Oct 2001 13:46:45 +0100 From: Ceri To: Joseph Cc: Rogier Steehouder , Eric Lam , freebsd-questions@FreeBSD.ORG Subject: Re: IPFW Rules Help Message-ID: <20011026134645.A20228@cartman.private.techsupport.co.uk> References: <20011026111309.B4520@localhost> <3BD95392.8040802@nicholasofmyra.org> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2.5i In-Reply-To: <3BD95392.8040802@nicholasofmyra.org>; from jolt@nicholasofmyra.org on Fri, Oct 26, 2001 at 08:14:10AM -0400 Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On Fri, Oct 26, 2001 at 08:14:10AM -0400, Joseph said: > > > > > >Besides DNS uses UDP, not TCP. > > > Actually, DNS uses UDP first. If a connection cannot be established, > it will try TCP. OK, let's be a bit stricter here. Zone transfers always use TCP. For other queries it will use UDP first, and if the answer is too big to fit in a UDP packet then it will use TCP. So you need to allow both. Ceri -- You need to install an RTFM interface. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message