RE: Secure Writeable Restricted VSFTP Site

"Gavin Mellors - BCX SS" <[email protected]> Wed, 20 Apr 2005 20:38:53 +0200
Newsgroups gmane.linux.redhat.release.shrike
Message-ID <D85A24E942FF35408855CEC2DCA158ADC1D5D0@exdbn02.africa.enterprise.root>
Hi All,

Thanks for the input it has been a learning curve here is what I had to do to allow restricted
external access...
As I mentioned RedHat 9.0 therefore...
 vsftpd.conf is in /etc and not /etc/vsftpd.d/ directory.
I am using /etc/xinetd.d/vstfpd as my tcp wrapper therefore hosts.allow and hosts.deny
 are not used?? instead I added the following line in /etc/xinetd.d/vsftpd only_from = "ip addr. to allow"
I had to change the pam_service_name from ftp to vsftp. @#$@#$
I had installed bastille lockdown utility and I had to reconfigure the firewall rules
to allow FTP (ports 20 and 21).

All is fine.


Regards
Gavin Mellors


-----Original Message-----
From: [email protected]
[mailto:[email protected]]On Behalf Of Mike Vanecek
Sent: Wednesday, April 20, 2005 6:47 PM
To: Discussion of Red Hat Linux 9 (Shrike)
Subject: RE: Secure Writeable Restricted VSFTP Site


On Wed, 20 Apr 2005 09:20:13 -0700, Michael St. Laurent wrote
> Are you allowing external connections to the ftp ports in your
> /etc/hosts.allow file?
> 
> --
> Michael St. Laurent
> Hartwell Corporation
> 
> -----Original Message-----
> From: [email protected] [mailto:[email protected]]
> On Behalf Of Gavin Mellors - BCX SS
> Sent: Monday, April 18, 2005 1:34 PM
> To: [email protected]
> Subject: Secure Writeable Restricted VSFTP Site
> 
> Hi All
> 
> I am trying to setup a secure ftp site using RH9.0, vsftpd and 
> xinetd. I can ftp in locally (local_enable=YES) but I cannot connect 
> to my site from an external address.


Any external firewall or router port issues?

Try running it as standalone and see it that makes a difference. I run mine as
a standalone ... seems like I remember something along those lines, but do not
remember?

-- 
Shrike-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/shrike-list

-- 
Shrike-list mailing list
[email protected]
https://www.redhat.com/mailman/listinfo/shrike-list