On Tue, 9 Dec 2003 11:32:23 -0500
stan <[EMAIL PROTECTED]> wrote:

..snip>
> 
> 
> Thanks for the helpful reply.
> 
> Do you think my firewall is blocking, even given the traceroute that shows
> I can get to one of the servers? I'm behin a NAT'ing OpenBSD firewall if
> that matters.
> 

Yes, because cdcc info is showing no responses.  Maybe the firewall is allowing only 
one-way traffic on UDP/6277.

Here is the text from the DCC FAQ on firewall setup.  As the text states, my firewall 
rule for DCC is the same as 'DNS Query', except that I added my mail server's ip 
address as the only valid source ip.

--copied
Which ports do I need to open in my firewall?
    DCC traffic is like DNS traffic. You should treat port 6277 like port 53. Allow 
outgoing packets to distant UDP port 6277 and incoming packets from distant UDP port 
6277. If you run a DCC server, open incoming connections to local TCP port 6277 and 
outgoing connections to distant TCP port 6277.

    If `dccproc` fails or the command `cdcc info` says no DCC servers are answering, 
you may need to adjust your firewall.

    See also the discussion of Cisco ACLs at 
http://www.rhyolite.com/anti-spam/dcc/firewall.html.
--end copied

Good luck, Alex


-------------------------------------------------------
This SF.net email is sponsored by: IBM Linux Tutorials.
Become an expert in LINUX or just sharpen your skills.  Sign up for IBM's
Free Linux Tutorials.  Learn everything from the bash shell to sys admin.
Click now! http://ads.osdn.com/?ad_id=1278&alloc_id=3371&op=click
_______________________________________________
Spamassassin-talk mailing list
[EMAIL PROTECTED]
https://lists.sourceforge.net/lists/listinfo/spamassassin-talk

Reply via email to