Hi,

I've setup ipf and ipnat on Solaris 8 on an E450.  I am running ipf
v3.4.30.  A pc on the internal 192.168.0.x network can web surf and send
mail through smtp no worries.  But when a user tries to check his mail
on an external mail server using POP the mail client connects, gets the
count of new messages and then seems to hang when it comes to
downloading the messages.  My ipf and ipnat rulesets are:

map sppp0 192.168.0.0/24 -> 0/32 proxy ftp ftp/tcp
map sppp0 192.168.0.0/24 -> 0/32 portmap tcp/udp auto
map sppp0 192.168.0.0/24 -> 0/32

----------------------------------------------------------
block in all
block out all
block in log quick all with opt lsrr
block in log quick all with opt ssrr

pass out quick on sppp0 proto tcp/udp from any to any keep state
pass in quick on sppp0 proto tcp from any to any port = ftp-data keep
state
pass in quick on sppp0 proto tcp from any port = ftp-data to any port >
1024

pass in quick on qfe3 from any to any keep state
pass out quick on qfe3 from any to any keep state

any assistance would be greatly appreciated.

Regards


Luke Purcell
begin:vcard 
n:Purcell;Luke 
tel;fax:07 3871 3073
tel;work:07 3721 4111
x-mozilla-html:FALSE
url:www.surebridge.com.au
org:SureBridge IT
adr:;;PO Box 1583;Toowong;QLD;4066;Australia
version:2.1
email;internet:[EMAIL PROTECTED]
title:Technical Consultant
note;quoted-printable:This email is confidential. If it includes quoted prices, unless=0D=0Aotherwise stated, validity is 14 days from the date of this message.=0D=0ASales tax, GST and delivery charges are excluded unless noted.=0D=0AAcceptance of any quotation or order is subject to FSQ's usual terms and=0D=0Aconditions of sale.=0D=0A=0D=0AIf this communication is not intended for you and you are not an=0D=0Aauthorised recipient of this email you are prohibited by law from=0D=0Adealing with or relying on the email or any file attachments.  This=0D=0Aprohibition includes reading, printing, copying, re-transmitting,=0D=0Adisseminating, storing or in any other way dealing or acting in reliance=0D=0Aon the information.=0D=0AIf you have received this email in error, we request you contact FSQ=0D=0Aimmediately by returning the email to [EMAIL PROTECTED] and destroy the=0D=0Aoriginal.  This email is confidential and may contain privileged client=0D=0Ainformation.  FSQ has taken rea!
sonable steps to ensure the accuracy and=0D=0Aintegrity of all its communications, including electronic=0D=0Acommunications, but accepts no liability for materials transmitted.
fn:Luke Purcell
end:vcard

Reply via email to