Hi,

I do have a shorewall perimeter firewall connected with a 1GBit Internet
connection. In my local lan I do have two bind redhat DNS servers.

Today I got a problem which I'd like to share - maybe you have any cloue
what's going on?

If I restart shorewall e.g. because I do have a new zone added or an IP
blocken or added a rule for some services, sometimes(!) the dns
resolving of clients on the same subnet as the dns servers is poor or
fails completly. e.g. a dig www.google.con can take from 1 to 1000s of ms.

Sometimes restarting the bind deamon solves the problem, sometimes I do
have to restart the whole server.

But sometimes after a shorewall restart there is no problem resolving names.

Any idea?? I'm some sort of frustrated ... :-) Maybe I can tweak
shorewall in some kind or pull some traffic information from the
firewall as the bind logs aren't very helpfull to me at the moment.

So thanks for any tip or hint!

Best regards


Götz Reinicke
-- 
Götz Reinicke
IT Koordinator

Tel. +49 7141 969 420
Fax  +49 7141 969 55 420
E-Mail [EMAIL PROTECTED]

Filmakademie Baden-Württemberg GmbH
Mathildenstr. 20
71638 Ludwigsburg
www.filmakademie.de

Eintragung Amtsgericht Stuttgart HRB 205016
Vorsitzender des Aufsichtsrats:
Dr. Christoph Palmer, MdL, Minister a.D.

Geschäftsführer:
Prof. Thomas Schadt


-------------------------------------------------------------------------
SF.Net email is sponsored by: The Future of Linux Business White Paper
from Novell.  From the desktop to the data center, Linux is going
mainstream.  Let it simplify your IT future.
http://altfarm.mediaplex.com/ad/ck/8857-50307-18918-4
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to