Hi Tim:
Can you be more specific on which sites I would need to allow access to?
Also, how to allow OCSP?
When I bring up Chrome on an Android, it reports the problem is a dns lookup.
That seems to make sense, because if I go to a Terminal App on the Android, I see the following:
(I've got ICMP open on this role)
Ping to internal dns servers by IP address: successful
Ping to external URL (eg. msn.com): name resolves successfully
Ping to an internal address by URL (listed in my internal dsn servers): does not resolve successfully
I've seen on another forum where someone was complaining that Android hard-codes Googles's dns servers, regardless of what address they get from dhcp. The testing above would seem to confirm that.
Thanks,
Tony