G'day, I'm currently experiencing a (yet another) problem with Gauntlet 5.0 for NT. At other sites the "three R's" method[1] worked, but this one just won't play nice. I have modified the NT install to make it more secure (actually as per the procedure I posted a while ago - maybe it's busted ;). This includes killing WINS, NetBIOS, most dumb services, OS/2 subsystem, Posix subsystem etc. Following this, I have performed a clean Gauntlet 5.0 install. Attempting to FTP through the firewall gets me this sort of thing: <13> 1999-09-28 17:08:37 gauntlet: securityalert: tcp from 208.228.229.70:20 to 172.16.1.1 on unserved port 20 Which is bizarre. Hello?? Ftp-gw? Traffic on port 20! Yoo-hoo! I have been in contact with the local NAI support (where I had to explain how non-passive ftp works) but with little luck. Anyone have any ideas? NAI - going to release 5.5 for NT any time soon? Please? There is a router doing NAT in the external network of the firewall, but I have checked to make sure that it's not blocking any traffic and that it's preserving the port numbers referenced in the ftp PORT command. I have read the manual, installed SP5, checked the proxy is turned on, that the firewall is plugged into the LAN and the power and I have also sacrificed some small rodentia in the name of Shub-Internet. Thanks... [1] Retry, Restart, Reinstall -- Ben Nagy Network Consultant, CPM&S Group of Companies PGP Key ID: 0x1A86E304 Mobile: +61 414 411 520 - [To unsubscribe, send mail to [EMAIL PROTECTED] with "unsubscribe firewalls" in the body of the message.]
