From owner-freebsd-security Sat Apr 1 16: 9: 5 2000 Delivered-To: freebsd-security@freebsd.org Received: from w2xo.pgh.pa.us (ipl-229-039.npt-sdsl.stargate.net [208.223.229.39]) by hub.freebsd.org (Postfix) with ESMTP id 8ABC337BCE8 for ; Sat, 1 Apr 2000 16:09:02 -0800 (PST) (envelope-from durham@w2xo.pgh.pa.us) Received: from w2xo.pgh.pa.us (shazam.w2xo.pgh.pa.us [192.168.5.3]) by w2xo.pgh.pa.us (8.9.3/8.9.3) with ESMTP id AAA98277; Sun, 2 Apr 2000 00:08:10 GMT (envelope-from durham@w2xo.pgh.pa.us) Message-ID: <38E68F70.128DDBFB@w2xo.pgh.pa.us> Date: Sat, 01 Apr 2000 19:08:16 -0500 From: Jim Durham Organization: dis- X-Mailer: Mozilla 4.7 [en] (X11; U; FreeBSD 3.4-RELEASE i386) X-Accept-Language: en MIME-Version: 1.0 To: Nate Williams Cc: freebsd-security@FreeBSD.ORG Subject: Re: FTP with firewall rules References: <38E159DF.3D7E5DF6@w2xo.pgh.pa.us> <200004011825.LAA04705@nomad.yogotech.com> Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.org Nate Williams wrote: > > > I'm looking for some input on how to set up > > FTP through an IPFW firewall so that you don't > > have to run passive mode. > > > > Passive mode makes things like building ports difficult. > > Why? I've got it setup that way (been that way for a couple of years), > and things work fine. However, I do things a bit 'non-standard', and go > hack the sources to both ftp and fetch to make passive mode the > default on my boxes. :) > > Nate Did that once. Then you have to do it with every upgrade. -- Jim Durham To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message