Re: conntrack ftp fails to handle PORT (and PASV?) command when split over multiple TCP packets

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Frank Bulk wrote:
> Thanks for the pointer to frox.
> 
> I'm not sure if the DSL modem vendor would add in this piece of opensource
> software to their box, but we'll see.

If you can insert the proxy between the DSLAM and the DSL modem, then
that would work too.  The proxy will rewrite the packets so that the
DSL modem doesn't see the split command.

Note that in either case, you'll have to avoid loading the ftp conntrack
helper on the proxy machine for this to work, which may mean you'll need
to use the TransparentData option for frox (but try without it first).
--
To unsubscribe from this list: send the line "unsubscribe netfilter-devel" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html

[Index of Archives]     [Netfitler Users]     [LARTC]     [Bugtraq]     [Yosemite Forum]

  Powered by Linux