On 19 Dec 2005 14:33:27 -0800 "Jonathan Rogers" <[EMAIL PROTECTED]> wrote:
: The think I can't understand is that I'm explicitly passing this kind
: of traffic:
:
: pass in quick on $dmz_if inet proto tcp from 192.168.3.0/26 to any
: port { 53 80 }
: keep state flags S/SA label "pass in dmz->any!good"
DNS primarily goes over UDP. You need to open up udp/53.
--
The trouble with being poor is that it takes up all your time.
