From owner-freebsd-current@FreeBSD.ORG Tue May 15 10:44:39 2007 Return-Path: X-Original-To: freebsd-current@freebsd.org Delivered-To: freebsd-current@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 58D8816A404 for ; Tue, 15 May 2007 10:44:39 +0000 (UTC) (envelope-from jhs@tower.berklix.net) Received: from thin.berklix.org (thin.berklix.org [194.246.123.68]) by mx1.freebsd.org (Postfix) with ESMTP id D492C13C455 for ; Tue, 15 May 2007 10:44:38 +0000 (UTC) (envelope-from jhs@tower.berklix.net) Received: from js.berklix.net (p549a7924.dip.t-dialin.net [84.154.121.36]) (authenticated bits=128) by thin.berklix.org (8.12.11/8.12.11) with ESMTP id l4FAUG3F035431; Tue, 15 May 2007 12:30:20 +0200 (CEST) (envelope-from jhs@tower.berklix.net) Received: from fire.jhs.private (fire.jhs.private [192.168.91.41]) by js.berklix.net (8.13.6/8.13.6) with ESMTP id l4FAU8Se030274; Tue, 15 May 2007 12:30:11 +0200 (CEST) (envelope-from jhs@tower.berklix.net) Received: from fire.jhs.private (localhost.jhs.private [127.0.0.1]) by fire.jhs.private (8.13.6/8.13.6) with ESMTP id l4FAUbEE063594; Tue, 15 May 2007 12:30:37 +0200 (CEST) (envelope-from jhs@fire.jhs.private) Message-Id: <200705151030.l4FAUbEE063594@fire.jhs.private> To: Tom McLaughlin In-reply-to: <1178935327.1786.6.camel@localhost> References: <20070510134740.GA39021@FreeBSD.czest.pl> <200705101342.l4ADgCgg007728@lurza.secnetix.de> <20070510221221.GA44910@FreeBSD.czest.pl> <464392EC.5090203@elischer.org> <20070510223739.GA66016@lor.one-eyed-alien.net> <4643C90D.9040906@elischer.org> <20070511015204.GA66910@lor.one-eyed-alien.net> <1178935327.1786.6.camel@localhost> Comments: In-reply-to Tom McLaughlin message dated "Fri, 11 May 2007 22:02:07 -0400." Date: Tue, 15 May 2007 12:30:37 +0200 From: "Julian H. Stacey" X-Mailman-Approved-At: Tue, 15 May 2007 11:59:56 +0000 Cc: jhs@berklix.com, freebsd-current@freebsd.org Subject: Re: We don't really need two FTP daemons X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 15 May 2007 10:44:39 -0000 Someone asked whether lukemftpd offered functionality other(s) don't ? What about proxy ? I've never been sure which ftpd to run on my gateway (with IPFW, with no NAT) to provide proxy, so internal hosts could cd /usr/ports; make fetch I've tried various ftpd's but never got the right combination of ftpd & client host environment variables (+ipfw), + some feeling of safety, as not wanting (most the time) to allow incoming ftp from internet to my gate (or beyond !), & some ftpd descriptions don't sound secure. Any reccomendations please of working combinations of ftpd's & env. vars & ipfw rules from people succesfully running make fetch on internal client hosts via proxy ftpd's on gateway, without NAT ? (Apache on gate works as http proxy already with IPFW & with no NAT). Julian -- Julian Stacey. Munich Computer Consultant, BSD Unix C Linux. http://berklix.com Ihr Rauch = mein allergischer Kopfschmerz. Dump cigs: Try snuff.