From: "Micheal Espinola Jr" <[EMAIL PROTECTED]>
> Lars Troen wrote:
> > To confirm this you can try telnet'ing to port 53 of an external dns
> > server.

You can force nslookup to use TCP only by typing 'set vc' acording to
http://support.microsoft.com/kb/263237 I knew this was possible but thought
that it was automatic on entering interactive mode.

> I'm not certain that is a true enough test. That would be a outbound
> connection initiated by a TCP connection through the firewall. That
> initiated connection could very well let TCP traffic back through.  On
> the other hand, the DNS query would be initiated via UDP and the
> response would come back TCP.  I don't know if that would work the
> same.  Any ideas?

This url might be usefull
http://homepages.tesco.net/J.deBoynePollard/FGA/dns-shaped-firewall-holes.html#Content
"The DNS-shaped holes that one cuts into firewalls."

> I did take your suggestion and try it, in which a connection was made
> but no information was echoed from either end.

That in itself indicates that it got through. Most tcp services can be used
from telnet. Do SMTP and POP3 all the time, never tried IMAP.

Bro



-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
_______________________________________________
Assp-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/assp-user

Reply via email to