Did you load the masq_ftp module on the firewall? Tom Veldhouse veldy at veldy.net ----- Original Message ----- From: Yaron <jethro at freakzilla.com> To: TCLUG <tclug-list at mn-linux.org> Sent: Wednesday, September 27, 2000 9:48 PM Subject: [TCLUG:21748] FTP (ipchains?) problem > Hi, > > Ok, this happens once every now-and-again... > > I've got an IPCHAINS nat/firewall with a couple of boxes behind it. Now > for some reason, when I try to ftp from one of the workstations, I > occasionally get this: > > 230 Guest login ok, access restrictions apply. > Remote system type is UNIX. > Using binary mode to transfer files. > ftp> ls > 500 Illegal PORT Command > ftp: bind: Address already in use > > > This happens on every FTP site I connect to. Passive mode seems to work > fine, but I wanna get to the bottom of this. The firewall is allowing both > ports 20 and 21, and allowing source to return. Furthermore, it logs all > denals and is logging nothing when this happens. > > Anyone? > > > -Yaron > > -- > > > --------------------------------------------------------------------- > To unsubscribe, e-mail: tclug-list-unsubscribe at mn-linux.org > For additional commands, e-mail: tclug-list-help at mn-linux.org > > --------------------------------------------------------------------- To unsubscribe, e-mail: tclug-list-unsubscribe at mn-linux.org For additional commands, e-mail: tclug-list-help at mn-linux.org