Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 13 May 2001 09:06:15 +0200 (CEST)
From:      Paul Herman <pherman@frenchfries.net>
To:        Hervey Wilson <herveyw@dynamic-cast.com>
Cc:        Artem Koutchine <matrix@ipform.ru>, <questions@FreeBSD.ORG>
Subject:   Re: Allow rules for ipfw for active ftp
Message-ID:  <Pine.BSF.4.33.0105130901000.10591-100000@husten.security.at12.de>
In-Reply-To: <011001c0db5f$0cd9f2c0$0101a8c0@chillipepper>

next in thread | previous in thread | raw e-mail | index | archive | help
On Sat, 12 May 2001, Hervey Wilson wrote:

> Then I discovered that login.conf was setting
> FTP_PASSIVE_MODE=YES. Removing this option so that the ftp client
> on the firewall server used active connections made everything
> work perfectly.

Mostly yes, but this can be a problem if both sides have a firewall,
which was why I needed to use punch_fw.  The users needed to regularly
FTP data from one customer who also was behind a firewall.  Someone
had to give.

-Paul.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?Pine.BSF.4.33.0105130901000.10591-100000>