enabling active FTPS in guarddog
Rich Stanton <[email protected]>
| Newsgroups | gmane.network.guarddog |
|---|---|
| Message-ID | <[email protected]> |
I'm running guarddog 2.4.0 on debian stable, and have an ftp site using proftpd behind it, on that same machine. FTP is allowed in guarddog and the server works fine. I now want to enable FTPS. Since guarddog can't inspect the packets and open pinholes for the passive ports in FTPS, I have specified a range of passive ports in proftpd, and specifically opened those ports in guarddog. Passive FTPS works fine. However I cannot get active FTPS to work. - users log in but cannot get a directory listing or do transfers. The server logs show guarddog dropping packets from port 20 on the server, which is obviously why it is not working. However the inbuilt FTP rule allows packets from port 20 - and since normal active ftp works, this rule is functioning, so why does active FTPS not work? Thanks for any help! ------------------------------------------------------- This SF.net email is sponsored by: Splunk Inc. Do you grep through log files for problems? Stop! Download the new AJAX search engine that makes searching your log files as easy as surfing the web. DOWNLOAD SPLUNK! http://sel.as-us.falkag.net/sel?cmd=lnk&kid=103432&bid=230486&dat=121642