Re: ftp over RH router
"Keith Mastin" <[email protected]>
| Newsgroups | gmane.linux.redhat.release.enigma |
|---|---|
| Message-ID | <[email protected]> |
<snip> >> You should also have this, in additon to having DENY as the forward >> default policy: >> -A forward -s 192.168.0.0/255.255.255.0 -d 192.168.0.0/255.255.255.0 >> -j \ ACCEPT >> > > Ok, I tryed putting that line in but it didn't really help. Besides, for > my testing purposes I have the forward policy set to ACCEPT, in which I > don't think that rule has any affect, but thanks anyway. > > I'm ftp-ing to another linux box that I admin and it doesn't work from > inside the net to the outside. I use current version of RH72's ftp-wu. > I can ftp to it with seperate windows box but not a box from that net. To clarify things... you have 2 subnets A and B inside the firewall there is no ftp server on the firewall all traffic between subs A and B goes through the firewall the ftp server is on sub B you can ftp from a windows box on sub A to the world you cannot ftp from same windows box on sub A to sub B you cannot ftp from world to sub B ... is this correct? If not, please set me straight. > I am not familiar with what the connection differences are between PASSV > and not, how windows ftp does it different, or if that even makes a > difference with ipchains masquerading. Is the ip_ftp_forward module installed in the kernel on the firewall box? -- Keith Mastin BeechTree Information Technology Services Inc. Toronto, Canada (416)696 6070