------art_21412_30592771.1159991479673
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

On 10/4/06, Joe Regular <kristapestry / yahoo.com> wrote:
>
> Hi Francis,
>  I can not do a dig when the firewall is active(just hangs). However, my
> external DNS servers appear to be ips on my private network and it looks
> like there is a rule in my config to allow all traffic/protocals across
> eth0(private nic) so I am not sure what is going on. I also have port 53
> open to tcp/udp on both devices.



I think I remember seeing a rule that inhibited outbound connections of any
kind except from the public interface (eth1). If your DNS servers are on a
different network, then you won't be able to reach them. If dig just hangs,
then you know it's a connectivity problem. Do you have any DNS servers you
can access (like from your ISP) from your public interface?

------art_21412_30592771.1159991479673--