> Synopsis > -------- > It is possible to cause certain firewalls to open up any > TCP port of your choice against FTP servers that are > "protected" by those firewalls. This is done by fooling > the FTP server into echoing "227 PASV" commands out through > the firewall. >
if i understand the manual then gta call this a "virtual crack", ie a second port opened for protocols like ftp, RealAudio etc...its also says that it is automatically configured when the outgoing packet is detected and held open for the duration of the connection...so the question is is gb looking for the 227 PASV command in the outgoing traffic??? As gb supports various protocols that behave this way i doubt it is configured for just ftp... just make sure that your servers are hardened and have no ports open that could be exploitable...they really should only have ports open that the firewall will allow traffic to
