Re: acl for ftp
"Ciprian Niculescu" <[email protected]>
| Newsgroups | gmane.org.user-groups.rlug.cisco |
|---|---|
| Message-ID | <[email protected]> |
pai si de ce stiam ca e mai bun ftp pasiv decat activ???? ca nu vad utilizarea cu porturi aleatorii la ambele capete C On Fri, 28 Mar 2003 16:58:14 +0200, "Adrian Ghioc" <[email protected]> said: > in ftp-ul pasiv clientul se conecteaza pe comenzi de pe un port neprivat > N1 > 1024 pe 21 la server, serverul ii raspunde de pe portul sau 21 pe > N1 clientului cu portul N2 > 1024 pe care sa se conecteze pentru date. > > clientul apoi se conecteaza de pe un alt port N3 > 1024 la server pe N2. > > Poti limita porturile neprivate pe care sa raspunda din setari (N2) la > serverul FTP. > Daca folosesti proftpd dai sa zicem asha: > > # Use the IANA registered ephemeral port range > PassivePorts 49152 65534 > > --- > Schematic, activul ar fi asa: > > "Comenzi" > Client (>1024) -> Server (21) > Reply > "Date" > Server(20) -> Client(>1024) > Reply > > --- > Send e-mail to [email protected] with subject "unsubscribe cisco" > (without quotes) to unsubscribe from this list. > > --- Send e-mail to [email protected] with subject "unsubscribe cisco" (without quotes) to unsubscribe from this list.