Hello,
     I don't know if this is related to post earlier today [FBSD 4.7
reset itself - lots of "DENY UDP" messages in /var/log/security], but
I've been trying to trouble shoot the "DENY" messages in
/var/log/security using dig:

# dig . ns @b.root-servers.net

; <<>> DiG 8.3 <<>> . ns @b.root-servers.net 
; (1 server found)
;; res options: init recurs defnam dnsrch
;; res_nsend to server b.root-servers.net  128.9.0.107: Connection
refused
# 
I get connection refused for this. Checking security:
Oct 27 15:16:26 Demon /kernel: ipfw: 910 Deny UDP <snip>:1381
128.9.0.107:53 out via sis0
Oct 27 15:16:26 Demon /kernel: ipfw: 910 Deny UDP 1<snip>:1382
128.9.0.107:53 out via sis0
# 

Verifying relevant ipfw rules:
# Allow out access to Internet Domain name server
$fwcmd add 00618 allow tcp from any to any 53 out via $oif setup
keep-state 
$fwcmd add 00619 allow udp from any to any 53 out via $oif setup
keep-state

Checking ipfw rule 910:
$fwcmd add 00910 deny log logamount 500 ip from any to any

Why am I not able to query root servers, given my rules 00618 & 00619? 

I'd appreciate someone helping me out here., (or hitting me over the
head if I'm missing something simple and glaringly obvious)

TIA 

Stacey



-- 
Stacey Roberts
B.Sc (HONS) Computer Science

Web: www.vickiandstacey.com

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to