OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Mathias Wegner (mwegnercs.oberlin.edu)
Date: Thu Feb 01 2001 - 22:40:41 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    > pass in on dc0 from any to any
    > pass out quick on dc0 from any to any

            To start with, you should probably make that last line:

    "pass out quick on dc0 from any to any keep state"

            so that outbound connections get their state kept as well.
    Another thing that you might try is logging all of the rules/using
    ipfstat to see if you can determine which rule is causing you trouble.
    Perhaps you explained this in your earlier email, but what traffic is
    getting stopped? And where?

    Mathias