Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 3 Feb 2003 10:43:39 -0600
From:      Redmond Militante <r-militante@northwestern.edu>
To:        freebsd-questions@freebsd.org
Subject:   ipf/ipnat and passive ftp
Message-ID:  <20030203164339.GA1541@darkpossum>

next in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]
hi all

i have an ftp server behind an ipf/ipnat gateway box.

active ftp works fine.  i'm trying to get passive ftp working, at the moment it is *slow*, eventually connects in most cases, but will not display directory contents unless you switch the ftp client to 'active'ly connect...

relevant portions of my config files

/etc/ipf.rules

 pass in quick on xl0 proto tcp from any to 192.168.1.50/8 port = 21 flags S kee
p state keep frags
 pass in quick on xl0 proto tcp from any to any port > 1023 flags S keep state


rdr xl0 0.0.0.0/0 port 21 -> 192.168.1.50 port 21 tcp
rdr xl0 0.0.0.0/0 port > 1023 -> 192.168.1.50 port > 1023 tcp

any advice you could give would be highly appreciated.  

thanks
redmond

[-- Attachment #2 --]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.1 (FreeBSD)

iD8DBQE+Ppw7FNjun16SvHYRAqWuAJ4nvHzwKPd7fhkKGvfIEzI9ixwNdACffz9L
Cn/Wc+Vx8R1ZyhUhURKcAZQ=
=LjxK
-----END PGP SIGNATURE-----

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030203164339.GA1541>