At 02:40 PM 12/18/2001 -0500, Vaughn Thurman - Swift Systems Inc wrote: >both >----- Original Message ----- >From: "Mike Burden" <[EMAIL PROTECTED]> >To: "Vaughn Thurman - Swift Systems Inc" <[EMAIL PROTECTED]> >Cc: <[EMAIL PROTECTED]> >Sent: Tuesday, December 18, 2001 12:28 PM >Subject: RE: [gb-users] FTP and Pass Through > > >Are you trying to allow External users to access >your servers through FTP, or are you trying to >allow hosts on your PSN to access hosts on the >Internet through FTP?
outbound ftp should work just fine with nothing but the "outbound" rule on the PSN. for inbound ftp using passive mode, be aware there is a bug (which i've been told is targeted for a fix in the next release), where if the inbound client is behind a NAT device of some sort, the port advertised by the FTP server will not be allowed through the firewall (e.g. it's supposed to create a virtual crack for this, but it doesn't). pending that fix (3.2.2?) you need to allow an appropriate port range inbound to the FTP server behind the PSN interface.
