Glynn Clements wrote:
> Do *not* DENY auth (ident) connections; either ACCEPT or REJECT them.
> Otherwise outbound connections may hang while the server attempts to
> perform an ident lookup.

Actually REJECT is not good enough for some systems:

   Digital Unix V4.0
   AIX version 4

They still hang for 75 seconds.  The only solution I know of, because
the firewall does not support sending TCP RSTs, is to ACCEPT ident
connections, but make sure you're not running the ident daemon.

-- Jamie
-
To unsubscribe from this list: send the line "unsubscribe linux-net" in
the body of a message to [EMAIL PROTECTED]

Reply via email to