Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 3 Feb 2003 10:43:39 -0600
From:      Redmond Militante <r-militante@northwestern.edu>
To:        freebsd-questions@freebsd.org
Subject:   ipf/ipnat and passive ftp
Message-ID:  <20030203164339.GA1541@darkpossum>

next in thread | raw e-mail | index | archive | help

--k1lZvvs/B4yU6o8G
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

hi all

i have an ftp server behind an ipf/ipnat gateway box.

active ftp works fine.  i'm trying to get passive ftp working, at the momen=
t it is *slow*, eventually connects in most cases, but will not display dir=
ectory contents unless you switch the ftp client to 'active'ly connect...

relevant portions of my config files

/etc/ipf.rules

 pass in quick on xl0 proto tcp from any to 192.168.1.50/8 port =3D 21 flag=
s S kee
p state keep frags
 pass in quick on xl0 proto tcp from any to any port > 1023 flags S keep st=
ate


rdr xl0 0.0.0.0/0 port 21 -> 192.168.1.50 port 21 tcp
rdr xl0 0.0.0.0/0 port > 1023 -> 192.168.1.50 port > 1023 tcp

any advice you could give would be highly appreciated. =20

thanks
redmond

--k1lZvvs/B4yU6o8G
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (FreeBSD)

iD8DBQE+Ppw7FNjun16SvHYRAqWuAJ4nvHzwKPd7fhkKGvfIEzI9ixwNdACffz9L
Cn/Wc+Vx8R1ZyhUhURKcAZQ=
=LjxK
-----END PGP SIGNATURE-----

--k1lZvvs/B4yU6o8G--

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030203164339.GA1541>