Re: ftp over RH router

"Keith Mastin" <[email protected]>
Newsgroups gmane.linux.redhat.release.enigma
Message-ID <[email protected]>
<snip>
>> You should also have this, in additon to having DENY as the forward
>> default policy:
>> -A forward -s 192.168.0.0/255.255.255.0 -d 192.168.0.0/255.255.255.0
>> -j \ ACCEPT
>>
>
> Ok, I tryed putting that line in but it didn't really help. Besides, for
> my testing purposes I have the forward policy set to ACCEPT, in which I
> don't think that rule has any affect, but thanks anyway.
>
> I'm ftp-ing to another linux box that I admin and it doesn't work from
> inside the net to the outside. I use current version of RH72's ftp-wu.
> I can ftp to it with seperate windows box but not a box from that net.

To clarify things...
 you have 2 subnets A and B inside the firewall
 there is no ftp server on the firewall
 all traffic between subs A and B goes through the firewall
 the ftp server is on sub B
 you can ftp from a windows box on sub A to the world
 you cannot ftp from same windows box on sub A to sub B
 you cannot ftp from world to sub B
... is this correct? If not, please set me straight.

> I am not familiar with what the connection differences are between PASSV
> and not, how windows ftp does it different, or if that even makes a
> difference with ipchains masquerading.

Is the ip_ftp_forward module installed in the kernel on the firewall box?

-- 
Keith Mastin
BeechTree Information Technology Services Inc.
Toronto, Canada
(416)696 6070
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.