My first guess is you are encounting problems with active ftp access,
passive ftp access has less problems with the basic firewall setup. Try
ftping your internal server with netscape for example. The Netscape help
includes the URL format for accessing a ftp server with user and password.
Hopes this helps.
On Wed, 25 Aug 1999, Martin Krzywinski wrote:
>
> I'm starting to fiddle with ipchains. I'm masquarading
>
> router --- [x.x.199.193]FIREWALL[10.1.1.1] --- private network
>
> A few things aren't working. For example, I can't ftp out of the private
> clients. The connection is made but the server complains about port
> numbers. I guess there's something screwy in the masquerading setup.
> Telnet and browsing work fine. Http downloads work fine.
>
> I've got
>
> ipchains -A forward -j MASQ
>
> added, but just that for now.
>
> In addition, I'd like to have internal web/ftp/ssh servers. How can I
> forward requests to x.x.199.194 on a given port, say 23, to go to
> 10.1.1.Y:23?
>
> Thanks for any info,
>
> Martin
>
> --------------------------------------------
> And I keep hearing from the cellar bin
> The rumbling sound
> Of load on load of apples coming in.
> For I have had too much
> Of apple-picking: I am overtired
> Of the great harvest I myself desired.
> Robert Frost (After Apple-Picking)
> --------------------------------- 575/1424 -
>
>
>
>
-
To unsubscribe from this list: send the line "unsubscribe linux-net" in
the body of a message to [EMAIL PROTECTED]