On 3.208, we have 3 interfaces:
EXT
Mail
Web
If webserver tries to send email to mailserver, mailserver tries to do an Ident (113 tcp) connection to webserver.
This is showing up in packetfilter livelog even though I have the "Ident Relay" turned on (forward is off).
telnet 113 to webserver fails.
telnet 113 to firewall succeeds.
No NAT or MASQ is in use. (Real IP's on all servers.)
Do I need to do a DNAT to force all ident to go to firewall's IP or something?
Thanks,
Barry
This thread was automatically locked due to age.