Mailing List Archive

Support open source code!


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: ipchains question



On Thu, 16 Aug 2001, Jimmy Lefkowitz wrote:

> I am new to ipchains (and firewalls in general).
> I am running a 2.2 debian linux with an adsl
> connection (pppoe).
>
> Once I set the default input chain behavior to DENY,
> no matter what other rules I set, I cannot get named
> to work. I have tried just accepting all tcp packets
> from anywhere to anywhere on any port and I still
> cannot get named to work.

DNS uses udp in the vast majority of cases (zone transfers excepted).  If
you want your named to work, allow udp (not tcp) packets on port 53.
-- 
Tod McQuillin



Home | Main Index | Thread Index

Home Page Mailing List Linux and Japan TLUG Members Links