Re: [SLE] susefirewall2 and ftp
- From: "Carlos E. R." <robin1.listas@xxxxxxxxxx>
- Date: Sat, 10 Dec 2005 00:32:20 +0100 (CET)
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
The Friday 2005-12-09 at 20:21 +0100, Sjoerd Hiemstra wrote:
> > server, after getting the connection in his port 21, opens an outgoing
> > connection to the client in port 20. There are thus two connections,
> > one for control, another for data sent.
> >
> > Passive does not need that port open in the client.
>
> Looks like it's related to the issue I'm dealing with.
> Simply using gFTP as an ftp client.
> Works well with all ftp servers except for one that needs passive mode
> disabled.
> (In gFTP: FTP > Options > tab FTP > uncheck 'Passive file transfers')
> This only works if the firewall is stopped, although the above suggests
> that opening port 20 would be sufficient.
In older versions of SuSE we used this in "/etc/sysconfig/SuSEfirewall2":
FW_ALLOW_INCOMING_HIGHPORTS_TCP="ftp-data"
But since I don't know exactly when (but some at some point in time since
we use kernel 2.6.x) the conntrack module should take care of that
transparently. In SuSE 9.3 it is not needed, that I know.
> >From the gFTP log, after logging in:
I don't know the exact point at which the data port connection is needed;
but if you open that port if it works, then that was it.
- --
Cheers,
Carlos Robinson
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.0 (GNU/Linux)
Comment: Made with pgp4pine 1.76
iD8DBQFDmhQLtTMYHG2NR9URAo8sAJ43Znywy4bMbiXCx+Z9FPjYoeglbgCfe5ju
bb2izoR1Y/81qasuRcrS4Hg=
=iuGH
-----END PGP SIGNATURE-----
--
Check the headers for your unsubscription address
For additional commands send e-mail to suse-linux-e-help@xxxxxxxx
Also check the archives at http://lists.suse.com
Please read the FAQs: suse-linux-e-faq@xxxxxxxx
- References:
- [SLE] susefirewall2 and ftp
- From: wavesurf
- Re: [SLE] susefirewall2 and ftp
- From: wavesurf
- Re: [SLE] susefirewall2 and ftp
- From: Chadley Wilson
- Re: [SLE] susefirewall2 and ftp
- From: wavesurf
- Re: [SLE] susefirewall2 and ftp
- From: Damon Register
- Re: [SLE] susefirewall2 and ftp
- From: Chadley Wilson
- Re: [SLE] susefirewall2 and ftp
- From: Damon Register
- Re: [SLE] susefirewall2 and ftp
- From: Chadley Wilson
- Re: [SLE] susefirewall2 and ftp
- From: Carlos E. R.
- Re: [SLE] susefirewall2 and ftp
- From: Sjoerd Hiemstra
- [SLE] susefirewall2 and ftp
- Prev by Date: Re: [SLE] susefirewall2 and ftp
- Next by Date: Re: [SLE] Ruby 1.8.3
- Previous by thread: Re: [SLE] susefirewall2 and ftp
- Next by thread: Re: [SLE] susefirewall2 and ftp
- Index(es):
Relevant Pages
|