[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] RE: [FW1] SMTP: Connection Refused
Hi, i put up a rule that allowed dns(tcp+udp), smtp and ftp. it looks like this: ---<snip>--- :src ( : Any ) :dst ( : mail-router : referens-computer ) :services ( : smtp : dns : ftp ) :action ( : (accept :type (accept) :macro (RECORD_CONN) :icon-name (icon-accept) :text-rid (61463) :windows-color (green) ) ---<snip>--- This is what i do: Firewall (10.2.1.1) ----->--to-->----- DNS/Mail-Router (10.2.1.10) Firewall ====== ---(shell command)--- [root@fw01 /root]# telnet 10.2.1.10 25 Trying 10.2.1.10... telnet: connect to address 10.2.1.10: Connection refused ---(tcpdump output)--- 10:05:20.330973 > 10.2.1.1.1126 > 10.2.1.10.smtp: S:(0) win 32120 <mss 1460,sackOK,timestamp 5067718 0,nop,wscale 0> (DF) [tos 0x10] 10:05:20.331221 < 10.2.1.10.smtp > 10.2.1.1.1126: R 0:0(0) ackwin 0 (DF) [tos 0x10] --- ---(fw log)--- there are no smtp-entries in the firewall log!!! long-log on all rules! dns-queries gets in the log. but not smtp. DNS/Mail-Router ============= ---(tcpdump output--- 10:05:19.850000 eth0 < 10.2.1.1.1126 > 10.2.1.10.smtp: S:(0) win 32120 <mss 1460,sackOK,timestamp 5067718 0,nop,wscale 0> (DF) [tos 0x10] 10:05:19.850000 eth0 > 10.2.1.10.smtp > 10.2.1.1.1126: R 0:0(0) ackwin 0 (DF) [tos 0x10] im digging further in to this problem, as right now but any help is wanted. Currently recompling the kernel with less shit that RedHat includes in the default configuration. best regards. //Claes Jansson - SWEDEN At 07:57 2001-09-11 +0100, you wrote: Claes,
|