[MLB-WIRELESS] OT ftp behind a firewall

Chris Samuel chris at csamuel.org
Sun Jun 15 14:17:48 EST 2003


-----BEGIN PGP SIGNED MESSAGE-----

On Saturday 14 Jun 2003 3:07 pm, Matthew Hill wrote:

> PORT 10,10,160,2,12,42

This is one reason why the connection is failing, you aren't using PASV mode 
and you're telling the remote system to connect back to you on IP address 
10.10.160.2, which isn't legal on the internet.

As that's failing I suspect you're either not using iptables or you are and 
haven't loaded the ip_conntrack_ftp module.

I'd certainly suggest looking at the Shorewall firewall configuration program 
- - if you're using Mandrake do (as root):

	urpmi shorewall

or if you're using Debian do (as root):

	apt-get install shorewall

then you'll need to edit the config files in /etc/shorewall.

Good luck!
Chris
- -- 
 Chris Samuel  :  http://csamuel.org/  :  Melbourne, VIC

 Need someone with 10 years of Linux, Unix, Networking
   & IT Security skills in Melbourne, VIC ? Email me.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iQEVAwUBPuvzbI1yjaOTJg85AQGF4Qf9HQpyq6w2qPUpdP+yzzLgEDRdaMbVtnlc
NnChlKXMI/VoL9gAr0ChYhH3SPAPcq8oZ7dN1pWrCwrsZPpplzMoRTQz/12fOpHj
OoKkU5VQ/3BSmxv0QMpw/OPPos9JIAnTzIVqWTAKPwg2s+17sZL33Ci+TSnwmbHe
fI80ENvMmPeqmsxBgh5GX1rdG4G9vjzOwNo/CdA0sncbqAWcmwe4FSRtPyeR0VQ3
N03+M9HnN3Abciq24QOiaO6AkOYAs0QY4ijCE6DR+HKMHk4L0rEHPFiFKmen3PKp
ndXPxhZ+s4z9tnM+1qA1d9j3bkjMyhtSRsXO6mlSPywjB+vYQVBsXg==
=EZ+L
-----END PGP SIGNATURE-----


To unsubscribe: send mail to majordomo at wireless.org.au
with "unsubscribe melbwireless" in the body of the message



More information about the Melbwireless mailing list