Re: [FUG-BR] script ipfw para ftp server (proftpd)

2006-08-22 Por tôpico Gilberto Villani Brito
Olá Eduardo,
O serviço de web esta funcionando corretamente???
Esse ip lib_ftp é o ip da máquina aonde você esta tentando acessar o ftp???
Tente utilizar o modo passivo:
 pass
 ls

Abraços
Gilberto

2006/8/18, Eduardo Crestani [EMAIL PROTECTED]:
 Pessoal,


 Estou tentando configurar um web+ftp server, mas quando tento logar e
 listar no ftp aparece esse erro:

 ncftp /  ls
 Data connection timed out.
 Falling back to PORT instead of PASV mode.
 List failed.

 Eis meu ipfw script, ele esta correto?


 ipfw -f flush

 lib_ftp=192
 lib_ssh1=192x

 ipfw add 2 deny tcp from any to any ipoptions ssrr,lsrr,rr
 ipfw add 3 deny ip from not me to any via rl0 out

 ipfw add 4 deny tcp from any to me tcpflags syn,fin
 ipfw add 5 deny tcp from any to me tcpflags syn,rst

 ipfw add 9 pass tcp from any to any established
 ipfw add 00010 pass tcp from me to any setup

 ipfw add 9 pass ip from 127.0.0.1 to 127.0.0.1 via lo0
 ipfw add 00011 pass ip from me to me via lo0
 ipfw add 00012 pass icmp from any to me
 ipfw add 00014 pass icmp from me to any

 ipfw add 00026 pass tcp from ${lib_ssh1} to me 22 setup

 ipfw add 00044 pass tcp from any to any 123 setup
 ipfw add 00045 pass tcp from any to me 80

 ipfw add 00049 pass tcp from ${lib_ftp} to me 1024-3 keep-state setup
 ipfw add 00047 pass tcp from ${lib_ftp} to me 20 keep-state setup
 ipfw add 00048 pass tcp from ${lib_ftp} to me 21 keep-state setup

 ipfw add 00077 pass tcp from any to me 8080
 ipfw add 00078 pass tcp from any to me 8005

 ipfw add 00079 pass udp from me to any 53
 ipfw add 00080 pass udp from any 53 to me

 ipfw add 00085 deny all from any to any




 --
 Edu
 -
 Histórico: http://www.fug.com.br/historico/html/freebsd/
 Sair da lista: https://www.fug.com.br/mailman/listinfo/freebsd

-
Histórico: http://www.fug.com.br/historico/html/freebsd/
Sair da lista: https://www.fug.com.br/mailman/listinfo/freebsd


[FUG-BR] script ipfw para ftp server (proftpd)

2006-08-18 Por tôpico Eduardo Crestani
Pessoal,


Estou tentando configurar um web+ftp server, mas quando tento logar e
listar no ftp aparece esse erro:

ncftp /  ls
Data connection timed out.
Falling back to PORT instead of PASV mode.
List failed.

Eis meu ipfw script, ele esta correto?


ipfw -f flush

lib_ftp=192
lib_ssh1=192x

ipfw add 2 deny tcp from any to any ipoptions ssrr,lsrr,rr
ipfw add 3 deny ip from not me to any via rl0 out

ipfw add 4 deny tcp from any to me tcpflags syn,fin
ipfw add 5 deny tcp from any to me tcpflags syn,rst

ipfw add 9 pass tcp from any to any established
ipfw add 00010 pass tcp from me to any setup

ipfw add 9 pass ip from 127.0.0.1 to 127.0.0.1 via lo0
ipfw add 00011 pass ip from me to me via lo0
ipfw add 00012 pass icmp from any to me
ipfw add 00014 pass icmp from me to any

ipfw add 00026 pass tcp from ${lib_ssh1} to me 22 setup

ipfw add 00044 pass tcp from any to any 123 setup
ipfw add 00045 pass tcp from any to me 80

ipfw add 00049 pass tcp from ${lib_ftp} to me 1024-3 keep-state setup
ipfw add 00047 pass tcp from ${lib_ftp} to me 20 keep-state setup
ipfw add 00048 pass tcp from ${lib_ftp} to me 21 keep-state setup

ipfw add 00077 pass tcp from any to me 8080
ipfw add 00078 pass tcp from any to me 8005

ipfw add 00079 pass udp from me to any 53
ipfw add 00080 pass udp from any 53 to me

ipfw add 00085 deny all from any to any




-- 
Edu
-
Histórico: http://www.fug.com.br/historico/html/freebsd/
Sair da lista: https://www.fug.com.br/mailman/listinfo/freebsd