From owner-freebsd-questions@FreeBSD.ORG Sat Jan 31 05:33:38 2004 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 8296316A4CE for ; Sat, 31 Jan 2004 05:33:38 -0800 (PST) Received: from mail.radicalv.com (secure.radicalv.com [216.118.91.10]) by mx1.FreeBSD.org (Postfix) with ESMTP id 63ECF43D46 for ; Sat, 31 Jan 2004 05:33:28 -0800 (PST) (envelope-from ecrist@adtechintegrated.com) Received: (qmail 54341 invoked from network); 31 Jan 2004 13:32:40 -0000 Received: from unknown (HELO 192.168.1.100) (63.228.14.245) by mail.radicalv.com with SMTP; 31 Jan 2004 13:32:40 -0000 From: Eric F Crist Organization: AdTech Integrated Systems, Inc To: Date: Sat, 31 Jan 2004 07:32:46 -0600 User-Agent: KMail/1.5 References: In-Reply-To: MIME-Version: 1.0 Content-Type: multipart/signed; protocol="application/pgp-signature"; micalg=pgp-sha1; boundary="Boundary-02=_+56GADu7XbAEvNd"; charset="iso-8859-1" Content-Transfer-Encoding: 7bit Message-Id: <200401310732.46938.ecrist@adtechintegrated.com> cc: freebsd-questions@freebsd.org Subject: Re: where am I supposed to put my rc.firewall? X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list Reply-To: ecrist@adtechintegrated.com List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 31 Jan 2004 13:33:38 -0000 --Boundary-02=_+56GADu7XbAEvNd Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Content-Description: signed data Content-Disposition: inline On Friday 30 January 2004 11:02 pm, JJB wrote: > How can it cause connections problems, you have never used it yet, > so how can you say that. I HAVE used it, and it is cause, primarily, DNS request problems. DNS quer= ies=20 don't seem to have the ability to forward to other servers. > Yes the rule set you posted is wide open. > You could remove rule 200 & 300, pretty meaningless in an wide open > config. The wide-open config is a start. I want to start with a working connection= ,=20 and move to adding deny rules from there. Thanks for the reply! =2D-=20 Eric F Crist AdTech Integrated Systems, Inc (612) 998-3588 --Boundary-02=_+56GADu7XbAEvNd Content-Type: application/pgp-signature Content-Description: signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.2.4 (FreeBSD) iD8DBQBAG65+zdyDbTMRQIYRAmGDAKCWP/xe9RU8BvbqsLzp7GsRY+bU6wCgtcSl 8wJonHbOHnv+9eEpYDeSfBU= =mKxG -----END PGP SIGNATURE----- --Boundary-02=_+56GADu7XbAEvNd--