Results 1 to 6 of 6
  1. #1
    Untangler
    Join Date
    Oct 2009
    Posts
    82

    Default Firewall slows traffic and causes timeouts?

    Hi everyone,
    I have just recently put Untangle up between my mail, web, & DNS server and the internet. I noticed that when the Untangle Firewall is on clients get very slow loading of the OWA page for example. When the firewall is off it's faster.

    When I have someone load the OWA page for example, ports 443 and 80 are open but yet when they hit enter the bars for block and pass shoot up, and there is nothing in the logs.

    I have all the ports I want open and the default rule is to block. Why is it so slow when the firewall is enabled?

  2. #2
    Untangle Ninja Solignis's Avatar
    Join Date
    Jul 2008
    Location
    Hudson, Ohio, USA
    Posts
    1,693

    Default

    Do you have the firewall set to Default Block? If so turn it to Default Pass, then try it. The problem with alot of web services I have played with is that they use random ports for the source port and things. You might be hosting OWA on port 80 and 443. But when the browser connects it uses a random port on the client end. That is at least how are computers seem to run.
    “Most good programmers do programming not because they expect to get paid or get adulation by the public, but because it is fun to program.” - Linus Torvalds

  3. #3
    Untangler
    Join Date
    Oct 2009
    Posts
    82

    Default

    Okay, that does make sense, Won't there be no point to have the firewall on if it just passes everything?

  4. #4
    Master Untangler dhtc's Avatar
    Join Date
    Sep 2008
    Location
    Canada
    Posts
    159

    Default

    The firewall just blocks outgoing connections. The block all setting causes more issues than it fixes, IMHO. I would set it to pass all and have one policy to log everything at the very least. Having a block on port 25 for everything but your mailserver (if you have one) is also a good idea.
    Dave

  5. #5
    mdh
    mdh is offline
    Untangle Ninja mdh's Avatar
    Join Date
    Aug 2007
    Posts
    4,802

    Default

    And also have a block on port 6667 outbound. If you get a bot or a trojan on your LAN, that helps to keep them from making contact with the mothership.
    This space reserved for profound thought.....which does happen on occasion."

  6. #6
    Untangle Ninja dwasserman's Avatar
    Join Date
    Jun 2008
    Location
    Argentina
    Posts
    3,965

    Default

    Quote Originally Posted by mdh View Post
    And also have a block on port 6667 outbound. If you get a bot or a trojan on your LAN, that helps to keep them from making contact with the mothership.

    6667 is the port used for IRC protocol. why block this?
    Let the people chat!!! :-)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •  

SEO by vBSEO 3.6.0 PL2