Did you load the masq_ftp module on the firewall?

Tom Veldhouse
veldy at veldy.net

----- Original Message -----
From: Yaron <jethro at freakzilla.com>
To: TCLUG <tclug-list at mn-linux.org>
Sent: Wednesday, September 27, 2000 9:48 PM
Subject: [TCLUG:21748] FTP (ipchains?) problem


>   Hi,
>
> Ok, this happens once every now-and-again...
>
> I've got an IPCHAINS nat/firewall with a couple of boxes behind it. Now
> for some reason, when I try to ftp from one of the workstations, I
> occasionally get this:
>
> 230 Guest login ok, access restrictions apply.
> Remote system type is UNIX.
> Using binary mode to transfer files.
> ftp> ls
> 500 Illegal PORT Command
> ftp: bind: Address already in use
>
>
> This happens on every FTP site I connect to. Passive mode seems to work
> fine, but I wanna get to the bottom of this. The firewall is allowing both
> ports 20 and 21, and allowing source to return. Furthermore, it logs all
> denals and is logging nothing when this happens.
>
> Anyone?
>
>
> -Yaron
>
> --
>
>
> ---------------------------------------------------------------------
> To unsubscribe, e-mail: tclug-list-unsubscribe at mn-linux.org
> For additional commands, e-mail: tclug-list-help at mn-linux.org
>
>


---------------------------------------------------------------------
To unsubscribe, e-mail: tclug-list-unsubscribe at mn-linux.org
For additional commands, e-mail: tclug-list-help at mn-linux.org