Re: ipfilter and ntp sserver

2005-02-13 Thread Erik Norgaard
dick hoogendijk wrote: On Sun, 13 Feb 2005 15:38:53 +0100 Erik Norgaard <[EMAIL PROTECTED]> wrote: ntp is udp-only, see rfc1305. Then how come I read in /etc/services 123/tcp 123/udp "network time protocol" ? I believe you, but am just curious. IANA has decided always to assign both tcp and udp,

Re: ipfilter and ntp sserver

2005-02-13 Thread dick hoogendijk
On Sun, 13 Feb 2005 15:38:53 +0100 Erik Norgaard <[EMAIL PROTECTED]> wrote: > ntp is udp-only, see rfc1305. Then how come I read in /etc/services 123/tcp 123/udp "network time protocol" ? I believe you, but am just curious. -- dick -- http://nagual.st/ -- PGP/GnuPG key: F86289CE ++ Running Fre

Re: ipfilter and ntp sserver

2005-02-13 Thread Erik Norgaard
dick hoogendijk wrote: I want my local ntp server up and running, so I put in /etc/rc.conf: xntpd_enable="YES" but waht are the right rules for ipfilter? Someting like: # Allow out ntp traffic pass out quick on rl0 proto tcp from any to any port = 123 flags S keep state pass out quick on rl0 proto

ipfilter and ntp sserver

2005-02-13 Thread dick hoogendijk
I want my local ntp server up and running, so I put in /etc/rc.conf: xntpd_enable="YES" but waht are the right rules for ipfilter? Someting like: # Allow out ntp traffic pass out quick on rl0 proto tcp from any to any port = 123 flags S keep state pass out quick on rl0 proto udp from any to any po