tech-net archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: ipf/ipnat ftp proxy mode for server side?



Edgar Fuß wrote:
Suppose I have an FTP server behind a IPF firewall.
Is there an IPNAT proxy mode for /incoming/ passive-mode FTP connections?
I.e. is there a more intelligent way to allow passive mode than giving a portrange in 
ftpd.conf and a corresponding port >< rule in ipf.conf?

You should be able to use rdr rules in ipnat.conf for that purpose. e.g.

rdr bge0 1.2.3.4/32 port ftp -> 1.2.3.4 port ftp tcp proxy ftp

Darren



Home | Main Index | Thread Index | Old Index