Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 24 Jun 2008 10:23:06 +0200
From:      albinootje <albinootje@gmail.com>
To:        "Jason C. Wells" <jcw@highperformance.net>
Cc:        freebsd-pf@freebsd.org
Subject:   Re: PF with ftp-proxy
Message-ID:  <4860AEEA.8090905@gmail.com>
In-Reply-To: <4860836B.4030402@highperformance.net>
References:  <4860836B.4030402@highperformance.net>

next in thread | previous in thread | raw e-mail | index | archive | help
Jason C. Wells wrote:

> But even more mysteriously, as I typed this message I fired up tcpdump
> to try and figure things out.  I then attempted to connect to
> ftp.freebsd.org and succeeded.  I have changed no firewall rules during
> the time that I have been writing this message. Then I did a refresh in
> firefox and the ftp session failed.  Double WTF? How on earth can the
> firewall work one second and then not work the next?

i'm using the following lines in pf.conf :

rdr on $intif proto tcp from $intif:network to any port ftp -> 127.0.0.1
port 8021
pass in on $extif inet proto tcp from port ftp-data to $extif user proxy
flags S/SA keep state

and this does not work in firefox (2.x),
but it works fine with ncftp and gftp




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?4860AEEA.8090905>