Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 06 Feb 2015 20:56:06 +0100
From:      Lista PF <a+pf@i-pi.pl>
To:        freebsd-pf@freebsd.org
Subject:   Fwd: FreeBSD 10 + reverse ftp-proxy
Message-ID:  <06ae8e0870798b33511a98cb975d64c4@i-pi.pl>

next in thread | raw e-mail | index | archive | help
Hello.
I search little @google for this problem but i can't find any good 
solution for it.

I have 2 pureftpd servers in my DMZ.

FTP 1
INTERNET > 212.12.12.1:2121 > 192.168.34.12:2121

FTP 2
INTERNET > 212.12.12.2:2121 > 192.168.34.19:2121

And i try to set reverse proxy for it, i add to my pf.conf
anchor "ftp-proxy/*"
pass in log 212.12.12.1 inet proto tcp from any to 212.12.12.1 port 2121 
flags S/SAFR modulate state divert-to lo0 port 9021
pass in log 212.12.12.2 inet proto tcp from any to 212.12.12.2 port 2121 
flags S/SAFR modulate state divert-to lo0 port 9022

And i run 2 x ftp-proxy

ftp-proxy -p 9021 -R 192.168.34.12 -P 2121 -D7 -v
ftp-proxy -p 9022 -R 192.168.34.19 -P 2121 -D7 -v

But when i try to check pf.conf syntax i got this error :
/etc/pf.conf:106: syntax error
106: pass in log 212.12.12.1 inet proto tcp from any to 212.12.12.1 port 
2121 flags S/SAFR modulate state divert-to lo0 port 9021

My uname -a :
FreeBSD cerber 10.1-RELEASE FreeBSD 10.1-RELEASE #0 r274401: Tue Nov 11 
21:02:49 UTC 2014     
root@releng1.nyi.freebsd.org:/usr/obj/usr/src/sys/GENERIC  amd64


Thanks for help.

Best regards.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?06ae8e0870798b33511a98cb975d64c4>