I just got into testing the FTPS portion of the server. It looks like we do NOT allow PBSZ or PROT commands before the user logs in. Shouldn't we be allowing these commands? My understanding from the RFC 2228 is that client first issues AUTH, then possibly several other commands like PBSZ and PROT before it issues the USER and PASS. What do you guys think?
Thanks. Sai Pullabhotla Phone: (402) 408-5753 Fax: (402) 408-6861 www.jMethods.com
