Glynn Clements wrote:
> Do *not* DENY auth (ident) connections; either ACCEPT or REJECT them.
> Otherwise outbound connections may hang while the server attempts to
> perform an ident lookup.
Actually REJECT is not good enough for some systems:
Digital Unix V4.0
AIX version 4
They still hang for 75 seconds. The only solution I know of, because
the firewall does not support sending TCP RSTs, is to ACCEPT ident
connections, but make sure you're not running the ident daemon.
-- Jamie
-
To unsubscribe from this list: send the line "unsubscribe linux-net" in
the body of a message to [EMAIL PROTECTED]