different between this two scripts???FTP Problems

This is a discussion on different between this two scripts???FTP Problems within the IPFilter forums, part of the System Security and Security Related category; <html><body><span style="font-family: arial,helvetica,sans-serif;"><font ...


Go Back   Usenet Forums > System Security and Security Related > IPFilter

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 02-18-2005
bsdboy
 
Posts: n/a
Default different between this two scripts???FTP Problems

<html><body><span style="font-family: arial,helvetica,sans-serif;"><font size="2"><br>
&nbsp; I am using freebsd 4.10 p5, running ipfilter in the kernel. But
i have this question, what is the different between this to scrips:<br>
<br>
********************************************before cool********************************************** ******<br>
&nbsp;&nbsp; /etc/ip.rules<br>
&nbsp;&nbsp; pass out quick on tun0 proto tcp from any to any flags S keep state<br>
&nbsp;&nbsp; pass out quick on tun0 proto udp from any to any keep state<br>
&nbsp;&nbsp; pass out quick on tun0 proto icmp from any to any keep state<br>
<br>
&nbsp;&nbsp; ****my Private nick si ed0 and he can walk free***<br>
<br>
&nbsp;&nbsp; /etc/ipnat.rules<br>
&nbsp;&nbsp; map tun0 192.168.1.0/24 -&gt; 0/32<br>
</font></span><span style="font-family: arial,helvetica,sans-serif;"><font size="2">***************************************** ***before cool********************************************** ******<br>
</font></span><span style="font-family: arial,helvetica,sans-serif;"><font size="2">***************************************ne w problems FTP*********************************************** *****</font></span><br>
<span style="font-family: arial,helvetica,sans-serif;"><font size="2">&nbsp;&nbsp; And the new <br>
<br>
&nbsp;&nbsp; /etc/ipf.rules<br>
&nbsp;&nbsp; pass out quick on tun0 proto tcp from any to any port = 21 flags S keep state<br>
&nbsp;&nbsp; pass out quick on tun0 proto tcp from any to any port = 80 flags S keep state<br>
</font></span><span style="font-family: arial,helvetica,sans-serif;"><font size="2"><br>
&nbsp;&nbsp; ****my Private nick si ed0 and he can walk free***</font></span><br>
<span style="font-family: arial,helvetica,sans-serif;"><font size="2">&nbsp;&nbsp; <br>
&nbsp; /etc/ipnat.rules<br>
</font></span>&nbsp; map tun0 192.168.1.0/24 -&gt; 0/32 proxy port 21 ftp/tcp&nbsp; <br>
&nbsp; map tun0 192.168.1.0/24 -&gt; 0/32 portmap tcp/udp 20000:60000<span style="font-family: arial,helvetica,sans-serif;"><font size="2"> <br>
&nbsp; map tun0 192.168.1.0/24 -&gt; 0/32 <br>
</font></span><span style="font-family: arial,helvetica,sans-serif;"><font size="2">***************************************ne w problems FTP*********************************************** *****<br>
<br>
</font></span><span style="font-family: arial,helvetica,sans-serif;"><font size="2">&nbsp;&nbsp;
I ask this because, the first none of my clients(win xp, win98, win2k,
freebsd) was having problems accessing any service, FTP, WEB, HTTPS,
etc.<br>
<br>
&nbsp;&nbsp; But went i change my rules to be more defined if&nbsp;
they want to access the freebsd server example, the server say:<br>
<br>
ftp&gt; ls<br>
&nbsp;&nbsp;&nbsp; Entering passive mode<br>
&nbsp;&nbsp;&nbsp; ftp: connect no route to host<br>
&nbsp;&nbsp;&nbsp; <br>
&nbsp;&nbsp;&nbsp; Ok i read that this a&nbsp; protocol desing problem, but what is the different between this to scrips???<br>
&nbsp;&nbsp;&nbsp; why the first one dont have any problems and the second one give this problems???<br>
<br>
&nbsp;&nbsp;&nbsp; Any information will be aprecite. <br>
<br>
&nbsp;&nbsp; Thanks in advanced.<br>
<br>
NOTE: Some one give a tip: he say to resolve this problem just add a new rule on /etc/ipnat<br>
</font></span>&nbsp; map tun0 192.168.1.0/24 -&gt; (ftp.server.ip)/32 proxy port 21 ftp/tcp&nbsp; <br>
&nbsp; map tun0 192.168.1.0/24 -&gt; 0/32 proxy port 21 ftp/tcp&nbsp; <br>

&nbsp; map tun0 192.168.1.0/24 -&gt; 0/32 portmap tcp/udp 20000:60000<span style="font-family: arial,helvetica,sans-serif;"><font size="2"> <br>
&nbsp; map tun0 192.168.1.0/24 -&gt; 0/32 <br>
</font></span><span style="font-family: arial,helvetica,sans-serif;"></span><br>
&nbsp;<br>
<br>&nbsp;<br><hr>Create tu cuenta webmail en http://www.starlinux.net<br></body></html>
Reply With Quote
Reply
Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT +1. The time now is 04:30 AM.


Powered by vBulletin® Version 3.7.3
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.0.0