------ art_21412_30592771.1159991479673 Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit Content-Disposition: inline On 10/4/06, Joe Regular <kristapestry / yahoo.com> wrote: > > Hi Francis, > I can not do a dig when the firewall is active(just hangs). However, my > external DNS servers appear to be ips on my private network and it looks > like there is a rule in my config to allow all traffic/protocals across > eth0(private nic) so I am not sure what is going on. I also have port 53 > open to tcp/udp on both devices. I think I remember seeing a rule that inhibited outbound connections of any kind except from the public interface (eth1). If your DNS servers are on a different network, then you won't be able to reach them. If dig just hangs, then you know it's a connectivity problem. Do you have any DNS servers you can access (like from your ISP) from your public interface? ------ art_21412_30592771.1159991479673--