Bob -

I am keeping state with the port 21 rule.  I am perplexed because everything
works fine on the local LAN.

On 5/12/06, Bob Goodman <[EMAIL PROTECTED]> wrote:

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

>Hi my name is Terry Stoner.  I just set up a new Firewall, FreeBSD
6.0, and
>am having trouble connecting from the internet.  Basically I want
to ssh
>from work.  I set sshd_config to listen on all interfaces and on
port 21,
>this port is not blocked outbound from work.  I have ipfilter
rules allowing
>inbound on this port and interface.  I setup port forwarding on my
netgear
>router.  When I do a tcpdump I see myself hitting the interface of
my
>firewall, but sshd is not responding.  I get to my box, but no
dice.  Do you
>have any suggestions?  I would appreciate it.
>
>Thank you,
>
>Terry Stoner
>

Are you certain that you allow both inbound traffic to your port 21
and outbound traffic from your port 21? Something with "keep state"
in the ipfilters ruleset?

Bob Goodman
-----BEGIN PGP SIGNATURE-----
Note: This signature can be verified at https://www.hushtools.com/verify
Version: Hush 2.5

wkYEARECAAYFAkRlA08ACgkQAQ09syE0bn45mQCeIcOn0hmTCdKRIEprgN543vJYb80A
nig4TZ0WCEqQzJf6tAyiC4O0sTm+
=u018
-----END PGP SIGNATURE-----




Concerned about your privacy? Instantly send FREE secure email, no account
required
http://www.hushmail.com/send?l=480

Get the best prices on SSL certificates from Hushmail
https://www.hushssl.com?l=485


_______________________________________________
freebsd-questions@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to