ftpproxy  

[general-l] ftp.proxy and ncftp {04}

Wolfgang Zekoll
Thu, 5 Feb 2004 23:22:00 +0100

<x-flowed>
At 21:06 05.02.2004, you wrote:
>Thank you for your reply and I hope this helps.

Yes, this is whatI call debugging information.

>/var/log/messages on the proxy server
>
>Feb  5 15:01:26 proxy1-lx ftp.proxy[32483]: connected to client: 
>snoopy.mvnhealth.com, interface= 172.19.11.12:21
>Feb  5 15:01:26 proxy1-lx ftp.proxy[32483]: info: monitor mode: on, ccp: 
><unset>
>Feb  5 15:01:26 proxy1-lx ftp.proxy[32483]: -ERR: missing hostname

The proxy server says that you are not supplying the target's FTP-server 
name with the username.  It expects [EMAIL PROTECTED]' but you're sending 
only `login'.

>...
># Types of firewalls:
># ------------------
>#
>#    type 1:  Connect to firewall host, but send "USER [EMAIL PROTECTED]"
>#
>...
>firewall-type=3
>#

This is wrong, must be `1'.

Regards

Wolfgang Zekoll


--general-l------------------------------------
To unsubscribe please visit:
http://www.ftpproxy.org/html/maillinglists.html

</x-flowed>
From [EMAIL PROTECTED] Fri Feb 06 15:43:23 2004
Return-Path: <[EMAIL PROTECTED]>
Received: from mail.compucation.de (mail.compucation.de [213.185.64.44])
                by um1.pce.de (8.11.3/8.11.3/SuSE Linux 8.11.1-0.5) with ESMTP 
id i16EZGw12618
                (using TLSv1/SSLv3 with cipher RC4-MD5 (128 bits) verified NO)
                for <[EMAIL PROTECTED]>; Fri, 6 Feb 2004 15:35:17 +0100
Received: from mail.mvnhealth.com ([64.9.116.126])
                by compucation.de (mail.compucation.de [213.185.64.44])
                (MDaemon.PRO.v6.8.5.R)
                with ESMTP id 49-md50000000009.tmp
                for <[EMAIL PROTECTED]>; Fri, 06 Feb 2004 15:34:26 +0100
Message-ID: <[EMAIL PROTECTED]>
X-Mailer: Novell GroupWise 5.5.5
Date: Fri, 06 Feb 2004 09:33:30 -0500
From: "Scott Kern" <[EMAIL PROTECTED]>
To: "general-l List Member"  <[EMAIL PROTECTED]>
Subject: [general-l] ftp.proxy and ncftp {05}
Mime-Version: 1.0
Content-Disposition: inline
X-Guinevere: 2.0.12 ; Faxton St Lukes Heal
X-MDRemoteIP: 64.9.116.126
Sender: [EMAIL PROTECTED]
X-Return-Path: [EMAIL PROTECTED]
Precedence: bulk
List-Unsubscribe: <[EMAIL PROTECTED]>
X-MDMailing-List: [EMAIL PROTECTED]
X-MDSend-Notifications-To: [EMAIL PROTECTED]
Reply-To: [EMAIL PROTECTED]
X-MDaemon-Deliver-To: [EMAIL PROTECTED]
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by um1.pce.de id 
i16EZGw12618
X-UIDL: (dW"[EMAIL PROTECTED]"!^=-"!2-h!!
X-Eudora2Unix: 3905-11-05T08:39:36Z converted

I changed the firewall setting in ncftp's firewall file from 3 to 1.  Now the 
problem is passing the password, in this case my email address, since I'm going 
to an anonymous ftp site.  How do I pass the password.  Below is the output 
from both ftp.proxy and ncftp.

My ultimate goal is to set up a ftp proxy for my comapny, that first, verifies 
the user is a member of a certain NT domain group, then uses the user's NT 
doamin username and password for authentication to allow the user through the 
ftp proxy server.  The proxy server is also running squid and I had to write a 
script to do the same type of authentication.

I've read all the documentation on your website, except rfc 959 and 2389, but 
obviously I'm fully comprehending it.  Thank you very much for your help.

debug stuff

Command line:  ncftp [EMAIL PROTECTED]

Output from /var/log/message on proxy server

Feb  6 09:00:37 proxy1-lx ftp.proxy[839]: connected to client: snoopy.mvnhealth.
com, interface= 172.19.11.12:21
Feb  6 09:00:37 proxy1-lx ftp.proxy[839]: info: monitor mode: on, ccp: <unset>
Feb  6 09:00:38 proxy1-lx ftp.proxy[839]: connected to server: ftp.cse.buffalo.e
du
Feb  6 09:00:43 proxy1-lx ftp.proxy[839]: -ERR: reply to PASS: 530 Login incorre
ct.
Feb  6 09:01:04 proxy1-lx ftp.proxy[843]: connected to client: snoopy.mvnhealth.
com, interface= 172.19.11.12:21
Feb  6 09:01:04 proxy1-lx ftp.proxy[843]: info: monitor mode: on, ccp: <unset>
Feb  6 09:01:04 proxy1-lx ftp.proxy[843]: connected to server: ftp.cse.buffalo.e
du
Feb  6 09:01:07 proxy1-lx ftp.proxy[843]: -ERR: reply to PASS: 530 Login incorre
ct.

Output from ncftp

SESSION STARTED at:  Fri Feb  6 09:00:37 2004
   Program Version:  NcFTP 3.1.5/066 Oct 13 2002, 09:25 PM
   Library Version:  LibNcFTP 3.1.5 (October 13, 2002)
        Process ID:  7094
          Platform:  linux-x86
          Hostname:  localhost.localdomain  (rc=4)
          Terminal:  screen
09:00:37  Fw: 172.19.11.12  Type: 1  User: skern  Pass: (none)  Port: 21
09:00:37  FwExceptions: .localdomain,localdomain
09:00:37  Connecting to [EMAIL PROTECTED] via 172.19.11.12...
09:00:37  Fw: 172.19.11.12  Type: 1  User: skern  Pass: (none)  Port: 21
09:00:37  FwExceptions: .localdomain,localdomain
09:00:37  LibNcFTP 3.1.5 (October 13, 2002) compiled for linux-x86
09:00:37  Uname: Linux|snoopy|2.4.20-28.9|#1 Thu Dec 18 13:45:22 EST 2003|i686
09:00:37  Glibc: 2.3.2 (stable)
09:00:37  Logging in...
09:00:37  220: server ready - login please
09:00:37  Connected to [EMAIL PROTECTED]
09:00:37  Cmd: USER [EMAIL PROTECTED]@ftp.cse.buffalo.edu
09:00:37  331: password required
09:00:37  Cmd: PASS xxxxxxxx
09:00:43  530: bad login
09:00:43  Cmd: QUIT
09:00:43  Sleeping 20 seconds.
09:00:43  Sleeping 20 seconds...
09:01:03  Retry Number: 1
09:01:03  Redialing (try 1)...
09:01:04  Logging in...
09:01:04  220: server ready - login please
09:01:04  Connected to [EMAIL PROTECTED]
09:01:04  Cmd: USER [EMAIL PROTECTED]@ftp.cse.buffalo.edu
09:01:04  331: password required
09:01:04  Cmd: PASS xxxxxxxx
09:01:07  530: bad login
09:01:07  Cmd: QUIT
09:01:07  Sleeping 20 seconds.
09:01:07  Sleeping 20 seconds...

---------------------------------------------

Command line:  ncftp ftp.cse.buffalo.edu

Output from /var/log/message on proxy server

Feb  6 09:13:49 proxy1-lx ftp.proxy[924]: connected to client: snoopy.mvnhealth.
com, interface= 172.19.11.12:21
Feb  6 09:13:49 proxy1-lx ftp.proxy[924]: info: monitor mode: on, ccp: <unset>
Feb  6 09:13:49 proxy1-lx ftp.proxy[924]: connected to server: ftp.cse.buffalo.e
du
Feb  6 09:13:53 proxy1-lx ftp.proxy[924]: -ERR: reply to PASS: 530 Login incorre
ct.
Feb  6 09:14:14 proxy1-lx ftp.proxy[925]: connected to client: snoopy.mvnhealth.
com, interface= 172.19.11.12:21
Feb  6 09:14:14 proxy1-lx ftp.proxy[925]: info: monitor mode: on, ccp: <unset>
Feb  6 09:14:14 proxy1-lx ftp.proxy[925]: connected to server: ftp.cse.buffalo.e
du
Feb  6 09:14:18 proxy1-lx ftp.proxy[925]: -ERR: reply to PASS: 530 Login incorre
ct.

Output from ncftp

SESSION STARTED at:  Fri Feb  6 09:13:49 2004
   Program Version:  NcFTP 3.1.5/066 Oct 13 2002, 09:25 PM
   Library Version:  LibNcFTP 3.1.5 (October 13, 2002)
        Process ID:  7146
          Platform:  linux-x86
          Hostname:  localhost.localdomain  (rc=4)
          Terminal:  xterm
09:13:49  Fw: 172.19.11.12  Type: 1  User: skern  Pass: (none)  Port: 21
09:13:49  FwExceptions: .localdomain,localdomain
09:13:49  Connecting to ftp.cse.buffalo.edu via 172.19.11.12...
09:13:49  Fw: 172.19.11.12  Type: 1  User: skern  Pass: (none)  Port: 21
09:13:49  FwExceptions: .localdomain,localdomain
09:13:49  LibNcFTP 3.1.5 (October 13, 2002) compiled for linux-x86
09:13:49  Uname: Linux|snoopy|2.4.20-28.9|#1 Thu Dec 18 13:45:22 EST 2003|i686
09:13:49  Glibc: 2.3.2 (stable)
09:13:49  Logging in...
09:13:49  220: server ready - login please
09:13:49  Connected to ftp.cse.buffalo.edu.
09:13:49  Cmd: USER [EMAIL PROTECTED]
09:13:49  331: password required
09:13:49  Cmd: PASS xxxxxxxx
09:13:53  530: bad login
09:13:53  Cmd: QUIT
09:13:53  Sleeping 20 seconds.
09:13:53  Sleeping 20 seconds...
09:14:13  Retry Number: 1
09:14:13  Redialing (try 1)...
09:14:14  Logging in...
09:14:14  220: server ready - login please
09:14:14  Connected to ftp.cse.buffalo.edu.
09:14:14  Cmd: USER [EMAIL PROTECTED]
09:14:14  331: password required
09:14:14  Cmd: PASS xxxxxxxx
09:14:18  530: bad login
09:14:18  Cmd: QUIT
09:14:18  Sleeping 20 seconds.
09:14:18  Sleeping 20 seconds...




Scott Kern
UNIX System Administrator
Network Data Systems, LLC
(315) 624-5879

>>> [EMAIL PROTECTED] 02/05/04 05:20PM >>>
At 21:06 05.02.2004, you wrote:
>Thank you for your reply and I hope this helps.

Yes, this is whatI call debugging information.

>/var/log/messages on the proxy server
>
>Feb  5 15:01:26 proxy1-lx ftp.proxy[32483]: connected to client: 
>snoopy.mvnhealth.com, interface= 172.19.11.12:21
>Feb  5 15:01:26 proxy1-lx ftp.proxy[32483]: info: monitor mode: on, ccp: 
><unset>
>Feb  5 15:01:26 proxy1-lx ftp.proxy[32483]: -ERR: missing hostname

The proxy server says that you are not supplying the target's FTP-server 
name with the username.  It expects [EMAIL PROTECTED]' but you're sending 
only `login'.

>...
># Types of firewalls:
># ------------------
>#
>#    type 1:  Connect to firewall host, but send "USER [EMAIL PROTECTED]"
>#
>...
>firewall-type=3
>#

This is wrong, must be `1'.

Regards

Wolfgang Zekoll


--general-l------------------------------------
To unsubscribe please visit:
http://www.ftpproxy.org/html/maillinglists.html 

CONFIDENTIALITY NOTICE: This e-mail message, including any attachments, is
for the sole use of the intended recipients(s) and may contain confidential
and privileged information. Any unauthorized review, use, disclosure, or
distribution is prohibited. If you are not the intended recipient(s), please
contact the sender by return e-mail and destroy all copies of the original
message. Thank you.


--general-l------------------------------------
To unsubscribe please visit:
http://www.ftpproxy.org/html/maillinglists.html
  • [general-l] ftp.proxy and ncftp {04} Wolfgang Zekoll