Re: masquerading & ftp
>>>>> "Nathan" == Nathan E Norman <nnorman@midco.net> writes:
Nathan> You need to use passive ftp from behind a masquerading
Nathan> box.
Nathan> I thought there was a masq module for FTP, but I guess I
Nathan> was thinking of the Cisco PIX. You have to examine each
Nathan> packet in a non-passive FTP session and rewrite IPs when
Nathan> NAT or masq is in play.
In Linux there is:
>ls -l /lib/modules/2.2.14/ipv4/ip_masq_ftp.o
-rw-r--r-- 1 root root 4396 Feb 12 07:56 /lib/modules/2.2.14/ipv4/ip_masq_ftp.o
last time I tried it, it seemed totally unreliable, but that may have
been due to problem on my PPP connection which I have since fixed.
--
Brian May <bam@debian.org>
Reply to: