OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Christian Delbaere (cmd118mail.usask.ca)
Date: Sat Dec 01 2001 - 18:53:28 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    It's this line in particular that prevents ftp-proxy from working.

    # finally lock the rest down with a default deny
    block in quick on $ExtIF from any to any

    If I remove it, the ftp-proxy works just fine. However, I'd really like to
    keep this line in the ruleset. Is there any way to use ftp-proxy and this
    line?

    Christian

    ----- Original Message -----
    From: "Dries Schellekens" <gwyllionace.ulyssis.org>
    To: "Christian Delbaere" <cmd118mail.usask.ca>
    Sent: Saturday, December 01, 2001 2:10 PM
    Subject: Re: ftp-proxy and pf.conf

    > Hello,
    >
    > I've not looked at the rules you're using, but an easy way to discover
    > what rule is blocking the packets is to add "log" to every rule and just
    > look at /var/log/pflog (or tcpdump -i pflog0).
    >
    > Succes with finding what's going wrong.
    >
    > Dries
    > --
    > Dries Schellekens
    > email: gwyllionulyssis.org