DROP or REJECT

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Which is better (to drop or reject packets)?  I am asking more specifically for connections from the internet to my external firewall.
 
My second question is if I have a DNS in my DMZ (contains only ip's in my dmz.  internal boxes use this as their DNS.  This DNS falls back to my ISP), do I have to allow both TCP and UDP connections on port 53 ?  Can I not just have UDP, or does it use both ?
 
Thank you.
 
 
 
 
Peter Marshall, BCS
Projects Division, CARIS
115 Waggoners Lane, Fredericton NB, E3B 2L4 CANADA
Phone:  (506) 458-8533 (Reception)
</html>

[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux