Skip site navigation (1)Skip section navigation (2)
Date:      Sat,  2 Aug 2003 09:12:01 +0200
From:      Jan Lentfer <Jan.Lentfer@web.de>
To:        Ronan Lucio <ronan@melim.com.br>
Cc:        security@freebsd.org
Subject:   Re: FTP
Message-ID:  <1059808321.3f2b6441bbaa5@www-mail.lan>
In-Reply-To: <00a001c35875$5432f730$3aa8a8c0@melim.com.br>
References:  <00a001c35875$5432f730$3aa8a8c0@melim.com.br>

next in thread | previous in thread | raw e-mail | index | archive | help

Zitat von Ronan Lucio <ronan@melim.com.br>:

> I usualy permit TCP traffic on ports from 1025 to 65535 of the servers
> that I need to permit FTP access.
> 
> Is there a more secure way to permit FTP access instead of to
> permit such ports?

What ftp server are you using? If I remember right ProFTPd allows you to define
what passive ports to use, eg. 50000-50100 or something like that. Then you only
open up that ports you defined in proftpd.conf in the firewall.
Or did you mean outgoing ftp traffic?


hth,

Jan



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1059808321.3f2b6441bbaa5>