Re: acl for ftp

"Ciprian Niculescu" <[email protected]>
Newsgroups gmane.org.user-groups.rlug.cisco
Message-ID <[email protected]>
pai si de ce stiam ca e mai bun ftp pasiv decat activ????

ca nu vad utilizarea cu porturi aleatorii la ambele capete

C

On Fri, 28 Mar 2003 16:58:14 +0200, "Adrian Ghioc" <[email protected]>
said:
> in ftp-ul pasiv clientul se conecteaza pe comenzi de pe un port neprivat
> N1 > 1024  pe 21 la server, serverul ii raspunde de pe portul sau 21 pe
> N1 clientului cu portul N2 > 1024 pe care sa se conecteze pentru date.
> 
> clientul apoi se conecteaza de pe un alt port N3 > 1024 la server pe N2.
> 
> Poti limita porturile neprivate pe care sa raspunda din setari (N2) la
> serverul FTP.
> Daca folosesti proftpd dai sa zicem asha:
> 
> # Use the IANA registered ephemeral port range
> PassivePorts 49152 65534
> 
> ---
> Schematic, activul ar fi asa:
> 
> "Comenzi"
> Client (>1024) -> Server (21)
> Reply
> "Date"
> Server(20) -> Client(>1024)
> Reply
> 
> ---
> Send e-mail to [email protected] with subject "unsubscribe cisco" 
> (without quotes) to unsubscribe from this list.
> 
> 
---
Send e-mail to [email protected] with subject "unsubscribe cisco" 
(without quotes) to unsubscribe from this list.
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.