Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 03 Jan 1997 05:28:20 -0600
From:      Alex Nash <nash@mcs.com>
To:        Jaye Mathisen <mrcpu@cdsnet.net>
Cc:        hackers@FreeBSD.org
Subject:   Re: Stupid ipfw question.
Message-ID:  <32CCED54.446B9B3D@mcs.com>
References:  <Pine.NEB.3.95.970103012006.14712T-100000@mail.cdsnet.net>

next in thread | previous in thread | raw e-mail | index | archive | help
Jaye Mathisen wrote:
> Why doesn't the following 2 rules allow any type of outbound TCP
> connection?
> 
>     /sbin/ipfw add pass tcp from ${ip} to any setup
>     /sbin/ipfw add pass tcp from any to any established

They do.  [On a stylistic note, I would probably swap the order
of established and setup for better performance.]

> Basically my FTP's are failing, but work fine in passive mode.

FTP active mode requires the server to be able to establish a
connection to the client.

I believe Nate ran into this same problem about 5-6 months ago.
What did you end up doing, Nate?

Alex



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?32CCED54.446B9B3D>