On 19 Dec 2005 14:33:27 -0800
"Jonathan Rogers" <[EMAIL PROTECTED]> wrote:

: The think I can't understand is that I'm explicitly passing this kind
: of traffic:
: 
:    pass in quick on $dmz_if inet proto tcp from 192.168.3.0/26  to any
: port  { 53 80  }
:       keep state flags S/SA label "pass in dmz->any!good"

DNS primarily goes over UDP.  You need to open up udp/53.


-- 
The trouble with being poor is that it takes up all your time.

Reply via email to