I made several searches over the internet to build my firewall rules.I really think you should restrict the rules:
Here they are :
http://stko.dyndns.info/scripts/ipt
I did as you say , but i dont kow the destination and/or source port of the answer from the DNS .
OR is it just a "related to established" so that i dont have to care about the answer ?
-- Rakotomandimby Mihamina Andrianifaharana Tel : +33 2 38 76 43 65 http://stko.dyndns.info/site_principal/Members/mihamina