[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: Portforwarding??



On Fri, Nov 05, 1999 at 03:43:36PM +0100, johan.hagstrom@intron.se wrote:
> I have set up a firewall system with several aliased interfaces and 
> Ip:s. All the virtual interaces are portforwarded into a dmz where my 
> webservers reside. Some of my web servers also provide ftp 
> services and this is handled by doing portforwarding on the virtual 
> interface and translate the trafic between the origin and the host.
> 
> Everything works fine. Except som strange effects in the ftp trafic. 
> My clints can connect but when they do trafic (ls) on the data-
> channel (20) the transfer seems to get stuck. When Ive analyzed 
> the trfaic with tcpdump it seems that the client get confused by the 
> outgoing communication coming from the original interface of the 
> firewall.
> 
> My question. Has anybody successfully managed to portforward ftp 
> trafic on a aliased interface?? If so plzzzz tell me how.

I believe that you need to have a ftp proxy running for this to
work, just for this reason.

Tim

-- 
 (work) sailer@bnl.gov / (home) tps@buoy.com - http://www.buoy.com/~tps
		 "The squeaky wheel gets the grease,
  but gets changed at the next opportunity if it squeaks habitually."
** Disclaimer: My views/comments/beliefs, as strange as they are, are my own.**


Reply to: