Edgar Fuß wrote:
Suppose I have an FTP server behind a IPF firewall. Is there an IPNAT proxy mode for /incoming/ passive-mode FTP connections? I.e. is there a more intelligent way to allow passive mode than giving a portrange in ftpd.conf and a corresponding port >< rule in ipf.conf?
You should be able to use rdr rules in ipnat.conf for that purpose. e.g. rdr bge0 1.2.3.4/32 port ftp -> 1.2.3.4 port ftp tcp proxy ftp Darren