Re: Firewall rules question

2001-12-05 Thread Benjamin Scott
On Tue, 4 Dec 2001, Tom Rauschenbach wrote: > I am aware that my current filewall rules are too simplistic ... You might want to post your firewall ruleset/script so we can get an idea of what you *are* doing... :-) -- Ben Scott <[EMAIL PROTECTED]> | The opinions expressed in this message ar

Re: Firewall rules question

2001-12-05 Thread Kevin D. Clark
Tom Rauschenbach <[EMAIL PROTECTED]> writes: > Does anyone know if they are trying to establish a reverse connection like > FTP does ? Well, they do, sort of. But (by default) they're using a UDP (a connectionless protocol) for this data-stream. No SYN bits to deal with with UDP... Questio

Firewall rules question

2001-12-04 Thread Tom Rauschenbach
Folks, I am aware that my current filewall rules are too simplistic to allow most FTP. The remote server cannot establish a connection with my LAN as I drop all packets with the SYN bit set (I think that's right, I drop the kind of packets that try to start a connection is what I'm trying t