On Wed, 1 Oct 2003, Martin Ferrari - Decidir IT wrote: > Hi, I don't know what's happening, but I discovered that my firewall is > currently rejecting with port unreachable about 60% of the DNS queries I > receive, but this is not happening with the other kind of traffic I manage > (http and smtp).
Hi Martin, Contrary to what a lot of people will tell you DNS does use TCP for things other than zone transfers. Did you allow for that in your ruleset? Grx HdV

