Re: ipf rules for ftp server

2005-01-27 Thread Dick Hoogendijk
On 26 Jan Thomas Foster wrote: I highly recommend switching over to PF instaed of IPF.. heres a couple of articles that cover setting up IPF (or PF) and configuring a decent ruleset to allow specific services. Maybe I would. But I run FreeBSD-4.11 and pf is not avail. Switching to 5.3 is not

Re: ipf rules for ftp server

2005-01-26 Thread Dick Hoogendijk
On 25 Jan Erik Norgaard wrote: They are not right. # ftp server - ftp session pass in quick on rl0 proto tcp from any to 0/32 port = 21 flags S \ keep state # passive ftp-data pass in quick on rl0 proto tcp from any to 0/32 port 49151 flags S \ keep state # active ftp-data pass

ipf rules for ftp server

2005-01-25 Thread dick hoogendijk
I read the handbook and googled, but am still confused on the right rules for my FTP server. I use ipf. My ftp section in /etc/ipf.rules now is: # FTP server out pass out quick on rl0 proto tcp from any to any port = 21 flags S keep state pass out quick on rl0 proto tcp from any to any port

Re: ipf rules for ftp server

2005-01-25 Thread Erik Norgaard
dick hoogendijk wrote: I read the handbook and googled, but am still confused on the right rules for my FTP server. I use ipf. My ftp section in /etc/ipf.rules now is: # FTP server out pass out quick on rl0 proto tcp from any to any port = 21 flags S keep state pass out quick on rl0 proto tcp from

RE: ipf rules for ftp server

2005-01-25 Thread Andras Kende
-Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of dick hoogendijk Sent: Tuesday, January 25, 2005 2:39 PM To: freebsd-questions@freebsd.org Subject: ipf rules for ftp server I read the handbook and googled, but am still confused on the right rules for my