Notices


 
 
LinkBack Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #5  
Old 27-Apr-2009, 11:58 PM
Senior Member
 
Join Date: Aug 2008
Posts: 1,634
phxazcraig 0 reputation points
Default Re: Outgoing FTP problems

In article <jsteinaker.3rbnbc@no-mx.forums.novell.com>, Jsteinaker
wrote:
> Mmm, it's not the best scenario. If there's a "right" solution, let's
> try it first. Can you explain me the idea?
>

The right way is to target the filter exceptions you need. Using
Filter Debug techniques is how I would go about it. (I show some
examples in my BMgr filtering book). The idea being that you show
packets being filtered, so you know what filter exceptions to open up.

FTP is not the simplest application to allow with filter exceptions,
since it uses both control and data ports. The default stateful FTP
exceptions take that into account in their design, but once you vary
from the default ports I wonder if you have real problems making
stateful exceptions? Anyway, you could open up the control port to
the target server address in one exception, and try making it stateful.
Or a pair of non-stateful exceptions, one with non-standard FTP dest
port, and the other with that port as source port. The data portion
could be a problem for you, but you might allow all IP from the target
server, and replies back out.

PKTSCAN on the server, with Wireshark on a PC to read the data easily
might be useful for seeing what ports are being used.

Craig Johnson
Novell Support Connection SysOp
*** For a current patch list, tips, handy files and books on
BorderManager, go to http://www.craigjconsulting.com ***


Reply With Quote
 

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -6. The time now is 10:17 AM.


© 2007 Novell, Inc. All Rights Reserved.

Search Engine Friendly URLs by vBSEO 3.3.0 RC2