enabling active FTPS in guarddog

Rich Stanton <[email protected]>
Newsgroups gmane.network.guarddog
Message-ID <[email protected]>
I'm running guarddog 2.4.0 on debian stable, and have an ftp site using 
proftpd behind it, on that same machine.  FTP is allowed in guarddog and 
the server works fine.  I now want to enable FTPS.  Since guarddog can't 
inspect the packets and open pinholes for the passive ports in FTPS, I 
have specified a range of passive ports in proftpd, and specifically 
opened those ports in guarddog.  Passive FTPS works fine.  However I 
cannot get active FTPS to work. - users log in but cannot get a 
directory listing or do transfers.  The server logs show guarddog 
dropping packets from port 20 on the server, which is obviously why it 
is not working.  However the inbuilt FTP rule allows packets from port 
20 - and since normal active ftp works, this rule is functioning, so why 
does active FTPS not work?

Thanks for any help!


-------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc. Do you grep through log files
for problems?  Stop!  Download the new AJAX search engine that makes
searching your log files as easy as surfing the  web.  DOWNLOAD SPLUNK!
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.