hi @all
thats my prob .. see log for detail:
2004-Jan 28 14:46:13 (none) kernel: UDP Drop: IN=eth0 OUT=eth1 SRC=xxx.xxx.0.16 DST=xxx.xxx.100.89 LEN=223 TOS=0x00 PREC=0x00 TTL=63 ID=21974 DF PROTO=UDP SPT=53 DPT=48823 LEN=203
2004-Jan 28 14:46:15 (none) kernel: UDP Drop: IN=eth0 OUT=eth1 SRC=xxx.xxx.0.16 DST=xxx.xxx.100.89 LEN=223 TOS=0x00 PREC=0x00 TTL=63 ID=21977 DF PROTO=UDP SPT=53 DPT=54330 LEN=203
eth0 network is internal net and eth1 is dmz
so how must the rule setup, to pass dns service trough
my rule for now:
eth0 network -> dns -> eth1 network -> allow
the ip 0.16 is the nameserver and the 100.89 ip request nameservice from 0.16 the firewall is also a forwarder to my isp nameserver.
hints ?
This thread was automatically locked due to age.