Hi,

One word.. DNS.. is the mail server receiving mail at all or sending
mail at all? .. Reason I ask is, if your default input policy is DENY
then you need more than tcp/domain port to be open in order for DNS
to function. If DNS does not function on the RaQ then mail will not
work since you need a valid host name in order for mail to be
received or sent. (It wont send because it cant look up the name
you want to send it to. It wont receive because of anti-spam rules
in the mail server).

Try telnetting to the server and doing an NS Lookup. If it succeeds
then my theory is wrong. If it times out or fails outright then
do a google for DNS issues with IPChains Firewalls (I cant remember
what you need exactly for DNS to work but I think its udp/domain)

Regards,

Michael Kovalik - Network Manager
Webdesign105.com Online Solutions

-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Sean Ward
Sent: Tuesday, 23 April 2002 10:02
To: [EMAIL PROTECTED]
Subject: [cobalt-security] pmfirewall , IPCHAINS, CDONTS and mail
forwarding

I installed pmfirewall with this:

$IPCHAINS -A input -p tcp -s $REMOTENET -d $OUTERNET 25 -j ACCEPT
When pmfirewall is running, the mail won't forward

Any clues?


_______________________________________________
cobalt-security mailing list
[EMAIL PROTECTED]
http://list.cobalt.com/mailman/listinfo/cobalt-security

Reply via email to