Re: How do I change my firewall ports to stealth mode?

2004-09-29 Thread Lars Hansson
Lars Hansson wrote: OpenBSD does this by default in inetd.conf. Correction, it doesnt. --- Lars Hansson

Re: How do I change my firewall ports to stealth mode?

2004-09-29 Thread Lars Hansson
Greg Wooledge wrote: Personally, I prefer not to reveal the usernames behind the client connections I'm making, so I use nullidentd. It's very simplistic; it just returns a constant string for all ident requests. (It doesn't appear to be in ports; I simply grabbed the source code from

Re: How do I change my firewall ports to stealth mode?

2004-09-29 Thread Rod.. Whitworth
On Tue, 28 Sep 2004 22:03:55 -0400, Greg Wooledge wrote: Personally, I prefer not to reveal the usernames behind the client connections I'm making, so I use nullidentd. It's very simplistic; it just returns a constant string for all ident requests. (It doesn't appear to be in ports; I simply

Re: How do I change my firewall ports to stealth mode?

2004-09-29 Thread Lars Hansson
[EMAIL PROTECTED] wrote: http://www.clock.org/~fair/opinion/identd.html Thanks for giving a link that nicely illustrates my point about people not understanding what ident does: The upshot of these assumptions is that when your system contacts the identd server of a remote system, you can trust

Re: pf stuffing sendmail?

2004-09-29 Thread A
Hi Yeah, have been studying the pflogs without any luck. No blocks registered from localhost.. indeed none on port 25 (except for packets with destination IP's inside the firewall). I would post the pf.conf but it is rather long. Andrew --- Sean [EMAIL PROTECTED] wrote: A wrote: Hey all

FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Siju George
hi all, I configured OpenBSD 3.5 PF as said in the FAQ. For the clients behind my PF firewall to access ftp servers I put this line in the pf.conf file rdr on $int_if proto tcp from any to any port 21 - 127.0.0.1:8021 I also have the following line uncommented from /etc/inetd.conf

Re: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Mark Rosenstand
Siju George [EMAIL PROTECTED] wrote: I also have the following line uncommented from /etc/inetd.conf 127.0.0.1:8021 stream tcp nowait root /usr/libexec/ftp-proxy ftp-proxy Now the FTP clients behind the PF firewall cant connect to the ftp servers on the internet username is authenticated

Re: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Jason Dixon
On Sep 29, 2004, at 5:10 AM, Siju George wrote: configured OpenBSD 3.5 PF as said in the FAQ. For the clients behind my PF firewall to access ftp servers I put this line in the pf.conf file rdr on $int_if proto tcp from any to any port 21 - 127.0.0.1:8021 I also have the following line uncommented

Re: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Siju George
On Wed, 29 Sep 2004 13:31:52 +0200, Mark Rosenstand [EMAIL PROTECTED] wrote: If you're running NAT, you'll need to add the -n option to ftp-proxy. Thanks Mark for the tip. So I changed the line in /etc/inetd.conf line to 127.0.0.1:8021 stream tcp nowait root /usr/libexec/ftp-proxy

Re: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Greg Hennessy
On 29 Sep 2004 03:12:27 -0700, [EMAIL PROTECTED] (Siju George) wrote: Could someone please point out the trouble? Yes, configuring the clients to use PASV will sort it. -- SB: Wait, you mean the costumes themselves give you super powers? MM: Of course! Why else would we fly around in

Re: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Clinton Sigmon
how FTP works http://slacksite.com/other/ftp.html http://pintday.org/whitepapers/ftp-review.shtml how to apply the rules in PF using FTP-Proxy http://www.aei.ca/~pmatulis/pub/obsd_ftp.html Siju George wrote: hi all, I configured OpenBSD 3.5 PF as said in the FAQ. For the clients behind my PF

Re: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Oliver Humpage
on 29/9/04 1:39 pm, Siju George at [EMAIL PROTECTED] wrote: It is still not working! Like before the ftp clients behind the PF firewall can access the FTP servers on the internet and user authentication is also successful but listing of files does not succed. Read up on the difference

RE: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Philippe Jandot
On Wed, 29 Sep 2004 07:32:07 -0400, Jason Dixon [EMAIL PROTECTED] wrote: As pleasant as you are Siju, it's quickly becoming apparent that you lack necessary training for becoming a qualified Systems Administrator. Very True! but Jason by the Grace of God, with alot of hardwork

Re: Load balancing DHCP (dsl and cable)

2004-09-29 Thread Remy Heiden
On Tue, 28 Sep 2004 20:10:23 -0500, Matt Sellers [EMAIL PROTECTED] wrote: Hey guys network diagram as such: The firewall has three interfaces (re0 = cable) (fxp0 = dsl) (bge0 = 10.0.0.0/24). NOTE: Both cable and DSL are DHCP so im kind of confused when some rules require an upstream

Re: FTP clients behind PF can connect to ftp serves but cannot list files why?

2004-09-29 Thread Mipam
On Wed, 29 Sep 2004, Siju George wrote: hi all, I configured OpenBSD 3.5 PF as said in the FAQ. For the clients behind my PF firewall to access ftp servers I put this line in the pf.conf file rdr on $int_if proto tcp from any to any port 21 - 127.0.0.1:8021 I also have the following