Skip site navigation (1)Skip section navigation (2)
Date:      Sat,  2 Aug 2003 09:12:01 +0200
From:      Jan Lentfer <Jan.Lentfer@web.de>
To:        Ronan Lucio <ronan@melim.com.br>
Cc:        security@freebsd.org
Subject:   Re: FTP
Message-ID:  <1059808321.3f2b6441bbaa5@www-mail.lan>
In-Reply-To: <00a001c35875$5432f730$3aa8a8c0@melim.com.br>

index | next in thread | previous in thread | raw e-mail

Zitat von Ronan Lucio <ronan@melim.com.br>:

> I usualy permit TCP traffic on ports from 1025 to 65535 of the servers
> that I need to permit FTP access.
> 
> Is there a more secure way to permit FTP access instead of to
> permit such ports?

What ftp server are you using? If I remember right ProFTPd allows you to define
what passive ports to use, eg. 50000-50100 or something like that. Then you only
open up that ports you defined in proftpd.conf in the firewall.
Or did you mean outgoing ftp traffic?


hth,

Jan


home | help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1059808321.3f2b6441bbaa5>