fbsd_user fbsd_user at a1poweruser.com
Mon Jan 2 07:26:46 PST 2006

Because the FTP protocol is very primitive and was created before
security was a concern. native  FTP in active mode requires you to
open all the high order ports. This is a well known security hole
and its used to penetrate your system. IPFW does not have way to
close this hole so the handbook IPFW examples do not include FTP.
IPFW was design to force users to use scp command (secure shell)
protocol for FTP & Telnet. Read the handbook for Ipfilter it has way
to secure native FTP.

-----Original Message-----
From: owner-freebsd-questions at freebsd.org
[mailto:owner-freebsd-questions at freebsd.org]On Behalf Of zhane H
Sent: Sunday, January 01, 2006 8:39 PM
To: questions at FreeBSD.org
Subject: IPFW> FTP

i had a minor question/concern i was wondering why does the firewall
rulesets have permissions for everything, and help for running
anything and how to open and wich port to open but yet it has no
ruleset or any help for using a FTP while using a firewall such as
IPFW. it
has no help in the handbook period. on how to use ftp while using
think someone must check this and try to add it in. please
freebsd-questions at freebsd.org mailing list
To unsubscribe, send any mail to
"freebsd-questions-unsubscribe at freebsd.org"

More information about the freebsd-questions mailing list