> That's right.  If you use ipportfw, you can "tunnel" individual
> connections arriving on known ports, through your firewall, to your
> masqueraded server.  The FTP "control" connection comes in on a known
> port, and can be tunnelled, but the "data" connections (if PASV mode
is
> used) cannot be determined ahead of time, without a supporting
protocol
> module.  I don't know of any such module available, nor under
> development.

Ok, is it correct that it's mostly webbrowsers using PASV mode? Pure
ftp clients commonly uses port 21? If this is the case, I can accept
this limitation.

> > If so, is there any solution to the problem?
> 
> If we knew of a solution, don't you think we would have told you?  :)

Well, you'll never know :-).

/Ola



_______________________________________________
Masq maillist  -  [EMAIL PROTECTED]
http://tiffany.indyramp.com/mailman/listinfo/masq
Admin requests can be handled by web (above) or [EMAIL PROTECTED]

Reply via email to