Hi, One word.. DNS.. is the mail server receiving mail at all or sending mail at all? .. Reason I ask is, if your default input policy is DENY then you need more than tcp/domain port to be open in order for DNS to function. If DNS does not function on the RaQ then mail will not work since you need a valid host name in order for mail to be received or sent. (It wont send because it cant look up the name you want to send it to. It wont receive because of anti-spam rules in the mail server).
Try telnetting to the server and doing an NS Lookup. If it succeeds then my theory is wrong. If it times out or fails outright then do a google for DNS issues with IPChains Firewalls (I cant remember what you need exactly for DNS to work but I think its udp/domain) Regards, Michael Kovalik - Network Manager Webdesign105.com Online Solutions -----Original Message----- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Sean Ward Sent: Tuesday, 23 April 2002 10:02 To: [EMAIL PROTECTED] Subject: [cobalt-security] pmfirewall , IPCHAINS, CDONTS and mail forwarding I installed pmfirewall with this: $IPCHAINS -A input -p tcp -s $REMOTENET -d $OUTERNET 25 -j ACCEPT When pmfirewall is running, the mail won't forward Any clues? _______________________________________________ cobalt-security mailing list [EMAIL PROTECTED] http://list.cobalt.com/mailman/listinfo/cobalt-security
