Where is your DNS server? Is it on your firewall machine?

If it's not then you need to allow your DNS server to contact the outside world.

Another point to consider, how does the machine which works do DNS?

As always, to debug the problem, please submit a report according to
http://shorewall.net/troubleshoot.htm

Prasanna.

On 3/28/07, Toralf Niebuhr <[EMAIL PROTECTED]> wrote:
> HI
>
> (i hope i didn't double post)
>
> I have multiple cients in my network and a server with
> dhcp,shorewal,....
> I wanted the server to be a realy tight firewall.
>
> so i created this /etc/shorewall/policy file
>
> loc             net             DROP
> loc             loc             ACCEPT
> loc             fw              ACCEPT
> fw              all             ACCEPT
> net             all             DROP
> all             all             REJECT
>
> of cause i want all my clients to have access to the web
>
> /etc/shorewall/rules
> ACCEPT  loc             net             tcp     80
>
> But when i do this, only one of my clients can look up webpages and
> the others don't.
> So; why does this happen and how can i correct it?
>
> Toralf
>
> -------------------------------------------------------------------------
> Take Surveys. Earn Cash. Influence the Future of IT
> Join SourceForge.net's Techsay panel and you'll get the chance to share your
> opinions on IT & business topics through brief surveys-and earn cash
> http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
> _______________________________________________
> Shorewall-users mailing list
> [email protected]
> https://lists.sourceforge.net/lists/listinfo/shorewall-users
>

-------------------------------------------------------------------------
Take Surveys. Earn Cash. Influence the Future of IT
Join SourceForge.net's Techsay panel and you'll get the chance to share your
opinions on IT & business topics through brief surveys-and earn cash
http://www.techsay.com/default.php?page=join.php&p=sourceforge&CID=DEVDEV
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to