weird problem with ipfw and ftp

Andrew P. infofarmer at mail.ru
Tue Apr 12 02:07:41 PDT 2005


Clement Twine wrote:
> so, should the following work?
> 
>  >>     ipfw add 00010 allow tcp from any to 10.0.0.1 21
>  >>     ipfw add 00011 allow tcp from 10.0.0.1 21 to any
>  >>     ipfw add 00012 allow tcp from any to 10.0.0.1 20
>  >>     ipfw add 00013 allow tcp from 10.0.0.1 20 to any

This last ruleset will work ok. Here's mine:

# ftp server
ipfw add 331 allow tcp from 172.17.0.0/24 to 172.17.0.1 20
ipfw add 332 allow tcp from 172.17.0.1 20 to 172.17.0.0/24
ipfw add 333 allow tcp from 172.17.0.0/24 to 172.17.0.1 21
ipfw add 334 allow tcp from 172.17.0.1 21 to 172.17.0.0/24

Works for me :)

Best wishes,
Andrew P.


More information about the freebsd-questions mailing list