On 04/10/2018 06:46 PM, Rick Stevens wrote:
Yes, I probably didn't say it well. I was inferring that if an outgoing UDP destination port 53 request was sent, then I think the iptables conntrack plugin opens incoming UDP traffic with a source port of 53 for some period of time, since this was (theoretically) a DNS request that's expecting an answer.
It's slightly more intelligent than that. Only "related" traffic will be allowed to return. In the case of UDP, that means that the source and destination IP address must match, and the source and destination ports must match the original request as well.
_______________________________________________ users mailing list -- users@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to users-leave@xxxxxxxxxxxxxxxxxxxxxxx