Martijn Lievaart a écrit : should the ftp-conntrack helper expose arbitrary ports on the originating host?Yes it should, for the following two reasons : 1) The host explicitly asked for it over the FTP control connection.2) The firewall administrator allowed it by loading the FTP conntrack module.No, not arbitrary ports. The port asked for in the port command should be opened (and it is). I took "arbitrary" as "arbitrarily chosen by the host". |
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: RELATED connections and the feeling of security, Martijn Lievaart |
|---|---|
| Next by Date: | Re: Inspection of Link Layer Packets?, Cedric Blancher |
| Previous by Thread: | Re: RELATED connections and the feeling of security, Martijn Lievaart |
| Next by Thread: | Re: RELATED connections and the feeling of security, tom |
| Indexes: | [Date] [Thread] [Top] [All Lists] |