Hi, I have a FTP running. and now i have a problem now whit it. . I can login to my FP server i see this: ftp ftp.server.com Connected to ftp.server.com (62.216.9.174). 220 ProFTPD 1.2.8rc1 Server (ftp.server.com) [phyton.addrenaline.com] Name (ftp.server.com:wouter): wouter 331 Password required for wouter. Password: 230 User wouter logged in. Remote system type is UNIX. Using binary mode to transfer files. ftp> ls 227 Entering Passive Mode (62,216,9,174,9,218). receive aborted waiting for remote to finish abort ftp> bye 221- bye 221 When i stop my firewall then is there now problem. /var/log/messages say the follow: Jan 31 11:02:12 phyton proftpd[19269]: phyton.addrenaline.com (sonic.nl3gta.nl[217.67.230.34]) - FTP session opened. Jan 31 11:02:18 phyton proftpd[19269]: phyton.addrenaline.com (sonic.nl3gta.nl[217.67.230.34]) - USER wouter: Login successful. Jan 31 11:02:18 phyton kernel: filtered on OUTPUT IN= OUT=eth1 SRC=62.216.9.174 DST=194.109.5.241 LEN=100 TOS=0x00 PREC=0x00 TTL=64 ID=0 DF PROTO=41 Jan 31 11:02:20 phyton kernel: filtered on INPUT IN=eth1 OUT= MAC=00:a0:d2:16:f7:93:00:10:67:00:f8:8e:08:00 SRC=217.67.230.34 DST=62.216.9.174 LEN=60 TOS=0x00 PREC=0x00 TTL=56 ID=24022 DF PROTO=TCP SPT=47561 DPT=2531 WINDOW=5840 RES=0x00 SYN URGP=0 Jan 31 11:02:26 phyton proftpd[19269]: phyton.addrenaline.com (sonic.nl3gta.nl[217.67.230.34]) - FTP session closed. and /var/log/proftpd.paranoid_log sonic.nl3gta.nl UNKNOWN nobody [31/Jan/2003:11:03:39 +0100] "USER wouter" 331 - sonic.nl3gta.nl UNKNOWN wouter [31/Jan/2003:11:03:42 +0100] "PASS (hidden)" 230 - sonic.nl3gta.nl UNKNOWN wouter [31/Jan/2003:11:03:42 +0100] "SYST " 215 - sonic.nl3gta.nl UNKNOWN wouter [31/Jan/2003:11:03:44 +0100] "PASV " 227 - sonic.nl3gta.nl UNKNOWN wouter [31/Jan/2003:11:03:54 +0100] "QUIT " 221 - Then here my firewall settings to open the ftp poorts here is $FTP_SERVER set to yes somewhere else in the config file ;) ## ftp server openstellen voor buitenwereld if [ $FTP_SERVER = yes ] ; then $IPTABLES -A INPUT -i $EXTERNAL_INTERFACE -p tcp \ -s $ANYWHERE -d $IPADDR -m state --state NEW,ESTABLISHED \ --source-port $UNPRIVPORTS --destination-port 21 -j ACCEPT $IPTABLES -A OUTPUT -o $EXTERNAL_INTERFACE -p tcp \ -s $IPADDR -d $ANYWHERE -m state --state ESTABLISHED,RELATED \ --source-port 21 --destination-port $UNPRIVPORTS -j ACCEPT ## ftp server - active $IPTABLES -A INPUT -i $EXTERNAL_INTERFACE -p tcp \ -s $ANYWHERE -d $IPADDR -m state --state ESTABLISHED,RELATED ! --syn \ --destination-port 20 -j ACCEPT $IPTABLES -A OUTPUT -o $EXTERNAL_INTERFACE -p tcp \ -s $IPADDR -d $ANYWHERE -m state --state ESTABLISHED,RELATED \ --source-port 20 -j ACCEPT ## ftp server - passive $IPTABLES -A INPUT -i $EXTERNAL_INTERFACE -p tcp \ -s $ANYWHERE -d $IPADDR -m state --state ESTABLISHED,RELATED \ --destination-port $UNPRIVPORTS -j ACCEPT $IPTABLES -A OUTPUT -o $EXTERNAL_INTERFACE -p tcp \ -s $IPADDR -d $ANYWHERE -m state --state ESTABLISHED,RELATED \ --source-port $UNPRIVPORTS -j ACCEPT fi Have someone a idea what is wrong ? i have no idea he have work for a few moths and i have nothing change in my config or firewall files. Thanks Wouter
participants (1)
-
Wouter