Skip site navigation (1)Skip section navigation (2)
Date:      Sat,  2 Aug 2003 09:12:01 +0200
From:      Jan Lentfer <Jan.Lentfer@web.de>
To:        Ronan Lucio <ronan@melim.com.br>
Cc:        security@freebsd.org
Subject:   Re: FTP
Message-ID:  <1059808321.3f2b6441bbaa5@www-mail.lan>
In-Reply-To: <00a001c35875$5432f730$3aa8a8c0@melim.com.br>
References:  <00a001c35875$5432f730$3aa8a8c0@melim.com.br>

next in thread | previous in thread | raw e-mail | index | archive | help
Zitat von Ronan Lucio <ronan@melim.com.br>:

> I usualy permit TCP traffic on ports from 1025 to 65535 of the servers
> that I need to permit FTP access.
>=20
> Is there a more secure way to permit FTP access instead of to
> permit such ports?

What ftp server are you using? If I remember right ProFTPd allows you to =
define
what passive ports to use, eg. 50000-50100 or something like that. Then y=
ou only
open up that ports you defined in proftpd.conf in the firewall.
Or did you mean outgoing ftp traffic?


hth,

Jan



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1059808321.3f2b6441bbaa5>