LinkBack Thread Tools Display Modes
Prev Previous Post   Next Post Next
  #8  
Old 25-Sep-2009, 02:50 PM
Senior Member
 
Join Date: Aug 2008
Posts: 1,634
phxazcraig 0 reputation points
Default Re: FTP acceleration filter exception?

In article <lFCum.12650$7G7.6927@kovat.provo.novell.com>, Mcu wrote:
> I also had trouble with setting up FTP proxy accelerator, but got the
> FTP-PORT_PASV_ST exception with source interface = any and destination
> interface = public. Why? I don't follow this, but it doesn't matter. I
> didn't see this easy instruction anywhere. Put it here to help others.
> Your exceptions were the clue that got me going, where they have no
> reference to the private interface. (BM 3.9)
>

Filter exceptions from private to public allow outbound traffic through
NAT that originate from hosts inside the firewall. However, traffic from
the proxy originates on the server itself, and in this case would be to
and from public. Therefore filter exceptions for proxy services should
be Source: PUBLIC and Dest: Public, and not public/private or
private/public.

Craig Johnson
Novell Support Connection SysOp
*** For a current patch list, tips, handy files and books on
BorderManager, go to http://www.craigjconsulting.com ***


Reply With Quote
 

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -6. The time now is 12:09 PM.


© 2007 Novell, Inc. All Rights Reserved.

Search Engine Friendly URLs by vBSEO 3.3.0 RC2