Re: PF binat and active FTP

From: Marin (REMOVE-marin-REMOVE_at_jware.hr)
Date: 02/24/04

  • Next message: Peter Matulis: "Re: PF binat and active FTP"
    Date: Tue, 24 Feb 2004 23:36:00 +0100
    
    

    Peter Matulis wrote:
    >>[FTP SERVER]------[OPENBSD]--------[LINUX NAT]--------[Win98]
    >>
    >> ^ ^
    >> | |
    >>External NET Internal NET
    >
    >
    > There must be something you're not telling us. Your setup is too strange.
    >

    Well, I know it's little bit strange, but: I am working for s small ISP
    and OpenBSD is (will be, now it's Novell Border manager)
    firewall/router/bandwidth shaper to all our customers who are on
    wireless WAN, and Linux NAT is private firewall/NAT box of one of our
    clients.

    External NET is Internet, network between OpenBSD and Linux NAT is
    Wireless WAN/LAN (my private network) and network between LINUX NAT and
    Win98 is customers private network.

    >
    >>On Linux I have loaded module ip_masq_ftp.
    >
    >
    > What does this module really do?
    >

    It enables active ftp over NAT (I think it's something like kernel
    ftp-proxy on linux)

    >>
    >>active ftp from Win98 to FTP SERVER is broken (login is OK, but any form
    >>of data transfer results in closed connection error)
    >
    >
    > Are you sure that this is an active client?

    yes (TCPDUMP), I am not sure about Windows version, but I know its
    WiNTENDO (Win95 or Win98 or Win98 SE or WinME), and I can't do anything
    about it (third party software vendor is requesting active ftp).


  • Next message: Peter Matulis: "Re: PF binat and active FTP"

    Relevant Pages

    • Re: PF binat and active FTP
      ... Your setup is too strange. ... and Linux NAT is private firewall/NAT box of one of our ... >Win98 is customers private network. ... Well having two adjacent ftp proxies is going to cause problems. ...
      (comp.unix.bsd.openbsd.misc)
    • SSH Lockup
      ... I just stumbled upon something very strange. ... I just installed 6.2 on a machine that was sitting in it's own private network behind an older 5.4 machine: ... I tried flushing arp. ...
      (freebsd-questions)