On Fri, Jun 07, 2002 at 12:00:19PM -0500, James Garrison wrote: > Does connection tracking understand incoming DHCP responses as > being related to recent outgoing broadcast DHCP requests? In other > words, if I configure iptables to allow outgoing DHCP broadcast > requests, do I have to explicitly open up a hole for the returning > response, or will conntrack do it for me with RELATED?
Since dhcp requests go out on port 68, and responses come back on port 67, connection tracking will not relate them. you'll need to explicitly open up a hole for the returning response. -- Scottie Shore <[EMAIL PROTECTED]> "You haven't gamed until you've circle-strafed while barrel rolling." - Blair on the Logitech Cyberman II
msg03607/pgp00000.pgp
Description: PGP signature
