Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 8 Jun 2006 15:42:47 +0400
From:      "Dmitry Andrianov" <dimas@dataart.com>
To:        <freebsd-pf@freebsd.org>
Subject:   Rules in anchor
Message-ID:  <D5972F49810A69449A9EA72A4B360DC2D0A22C@e1.universe.dart.spb>

next in thread | raw e-mail | index | archive | help
Hi.
I just installed ftpsesame ( http://www.sentia.org/projects/ftpsesame/ )
It watches FTP control connections for PORS/PASV commands and creates
rules to allow corresponding data connections.=20
=20
I start long file transfer, ftpsesame console output says it is allowing
incoming connection to my machine, transfer really starts but pfctl does
not show any rules in the corresponding anchor. Or I'm using it
improperly...
=20
root@host <mailto:root@host> # pfctl -s Anchors          =20
  ftpsesame
root@host <mailto:root@spb-gw1> # pfctl -a ftpsesame -s rules
root@host <mailto:root@spb-gw1> #=20
=20
>From the other hand I know for sure the rule is really created because
otherwise FTP active mode would not work. (And yes, if I stop ftpsesame,
active mode stops working). So either it is some kind of bug in pf/pfctl
or I am missing something...
=20
Regards,
Dmitry Andrianov
=20
PS: FreeBSD 6.0-RELEASE #0



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?D5972F49810A69449A9EA72A4B360DC2D0A22C>