G'day,

I'm currently experiencing a (yet another) problem with Gauntlet 5.0 for NT.
At other sites the "three R's" method[1] worked, but this one just won't
play nice.

I have modified the NT install to make it more secure (actually as per the
procedure I posted a while ago - maybe it's busted ;). This includes killing
WINS, NetBIOS, most dumb services, OS/2 subsystem, Posix subsystem etc.

Following this, I have performed a clean Gauntlet 5.0 install.

Attempting to FTP through the firewall gets me this sort of thing:

<13> 1999-09-28 17:08:37 gauntlet: securityalert: tcp from 208.228.229.70:20
to 172.16.1.1 on unserved port 20

Which is bizarre. Hello?? Ftp-gw? Traffic on port 20! Yoo-hoo!

I have been in contact with the local NAI support (where I had to explain
how non-passive ftp works) but with little luck.

Anyone have any ideas? NAI - going to release 5.5 for NT any time soon?
Please?

There is a router doing NAT in the external network of the firewall, but I
have checked to make sure that it's not blocking any traffic and that it's
preserving the port numbers referenced in the ftp PORT command. I have read
the manual, installed SP5, checked the proxy is turned on, that the firewall
is plugged into the LAN and the power and I have also sacrificed some small
rodentia in the name of Shub-Internet.

Thanks...

[1] Retry, Restart, Reinstall
--
Ben Nagy
Network Consultant, CPM&S Group of Companies
PGP Key ID: 0x1A86E304  Mobile: +61 414 411 520 
-
[To unsubscribe, send mail to [EMAIL PROTECTED] with
"unsubscribe firewalls" in the body of the message.]

Reply via email to