FTP is really weird.  If I remember right, there is a module you
can load (ip_masq_ftp.o?) that will help with FTP.

Nick





jethro at freakzilla.com, on 09/27/2000 09:48:26 PM
To: tclug-list at mn-linux.org @ PMDF
cc:  
Subject: [TCLUG:21748] FTP (ipchains?) problem

  Hi,

Ok, this happens once every now-and-again...

I've got an IPCHAINS nat/firewall with a couple of boxes behind it. Now
for some reason, when I try to ftp from one of the workstations, I
occasionally get this:

230 Guest login ok, access restrictions apply.
Remote system type is UNIX.
Using binary mode to transfer files.
ftp> ls 
500 Illegal PORT Command
ftp: bind: Address already in use


This happens on every FTP site I connect to. Passive mode seems to work
fine, but I wanna get to the bottom of this. The firewall is allowing both
ports 20 and 21, and allowing source to return. Furthermore, it logs all
denals and is logging nothing when this happens. 

Anyone?


-Yaron

--


---------------------------------------------------------------------
To unsubscribe, e-mail: tclug-list-unsubscribe at mn-linux.org
For additional commands, e-mail: tclug-list-help at mn-linux.org




-------------- next part --------------
---------------------------------------------------------------------
To unsubscribe, e-mail: tclug-list-unsubscribe at mn-linux.org
For additional commands, e-mail: tclug-list-help at mn-linux.org