Re: FTP from iptables

From: Seth Arnold (sarnold@wirex.com)
Date: 09/26/01


Date: Wed, 26 Sep 2001 09:39:32 -0700
From: Seth Arnold <sarnold@wirex.com>
To: focus-linux@securityfocus.com
Subject: Re: FTP from iptables
Message-ID: <20010926093932.H3680@wirex.com>

On Wed, Sep 26, 2001 at 08:27:15PM +0700, Derry Santoso wrote:
> And when I use my windows98 client and use build-in ftp client,
> after a successful login, when I typed 'dir' or 'ls', this message
> came up :

*sigh*

The FTP protocol was written in happier times, back when IP addresses
were plentiful, firewalls nonexistent, etc.

There are two modes to FTP: active and passive. I don't know which mode
the windows clients are in by default, but you can try swapping between
the two and see which one works better -- I think the command to swap is
"pasv", though it could be "passive". (Note that most web browsers use
passive ftp when accessing ftp:// URLs, so using one of those might make
testing easier..)

Cheers! :)



Relevant Pages

  • Re: FTP only with Windows? Why not Linux?
    ... Just today I went back on a windows ... I've used Kbear and Konqueror successfully to ftp to other ... Perhaps you have to use the so-called passive FTP mode? ... If a 'dir' or 'ls' after successful login takes forever, ...
    (Debian-User)
  • FTP 7.5 connection
    ... I am setting up a FTP server but the FTP client cannot receive the ... folder content of the remote FTP-server after the successful login. ... The Virtual directory has the same name as the ftp-user. ...
    (microsoft.public.inetserver.iis)