From mboxrd@z Thu Jan 1 00:00:00 1970 From: "it clown" Subject: bind 9 and iptables Date: Fri, 27 Aug 2004 22:06:00 +0200 Sender: netfilter-bounces@lists.netfilter.org Message-ID: Mime-Version: 1.0 Content-Transfer-Encoding: 8bit Return-path: List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: netfilter-bounces@lists.netfilter.org Content-Type: text/plain; charset="us-ascii" To: netfilter@lists.netfilter.org Hi All I have a dns with a forwarder to my isp on the iptables box. I am having trouble on getting dns to work properly. When i comment: iptables -P INPUT DROP iptables -p OUTPUT DROP DNS will work fine and all the pc's can browse the net. I have tried the following with out any luck: iptables -A OUTPUT -p tcp --dport 53 -j ACCEPT iptables -A OUTPUT -p udp --dport 53 -j ACCEPT iptables -A INPUT -m state --state ESTABLISHED,RELATED -j ACCEPT what rule do i need to add to make things more secure to get my dns working properly, thanks? Regards _____________________________________________________________________ For super low premiums ,click here http://www.dialdirect.co.za/quote