> Synopsis
> --------
>   It is possible to cause certain firewalls to open up any
>   TCP port of your choice against FTP servers that are
>   "protected" by those firewalls. This is done by fooling
>   the FTP server into echoing "227 PASV" commands out through
>   the firewall.
> 

if i understand the manual then gta call this a "virtual crack", ie a second
port opened for protocols like ftp, RealAudio etc...its also says that it is
automatically configured when the outgoing packet is detected and held open
for the duration of the connection...so the question is is gb looking for
the 227 PASV command in the outgoing traffic??? As gb supports various
protocols that behave this way i doubt it is configured for just ftp...

just make sure that your servers are hardened and have no ports open that
could be exploitable...they really should only have ports open that the
firewall will allow traffic to

Reply via email to