On Tue, Apr 25, 2006 at 10:59:18PM +1000, dave alleged: > -A INPUT -p tcp -m tcp -m multiport -j ACCEPT --dports 22,10000 > -A INPUT -p tcp -m tcp -m multiport -j ACCEPT --dports > 21,25,80,110,143,443,993,995,3306 Doesn't look like a very useful firewall. And you aren't allowing "related" packets, so anything that starts outbound on a higher numbered port will break. -- Garrick Staples, Linux/HPCC Administrator University of Southern California -------------- next part -------------- A non-text attachment was scrubbed... Name: not available Type: application/pgp-signature Size: 189 bytes Desc: not available Url : http://lists.dulug.duke.edu/pipermail/yum/attachments/20060425/51956f9a/attachment.bin