Re: IP_masq and FTP error message

Paolo Rocchi (paolo.rocchi@snam.eni.it)
Thu, 30 Jan 1997 09:06:37 +0100


At 18.27 29/01/97 -0800, you wrote:

>I don't have a problem on another machine of a friend, though.
>The setups are quite similar, though much playing is done with both machines.

After thorough tests last night I can confirm that also ftp works
perfectly under 2.1.24.
I got it working with the following setup:

ipfwadm -F -p accept <-------- with 'deny' it DOESN'T work
ipfwadm -F -a m 10.100.100.2/32 -D 0.0.0.0/0

echo 1 > /proc/sys/net/ipv4/ip_forwarding

(with the default 2 it doesn't go)

I feel a bit uneasy about the default policy (the howto clearly states
that it may open a rather worrying security hole).
Any experience on the subject ?

Ciao, Paolo