Re: FTP USER+IP ASSOCIATION CONTROL

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Hello,

	From my use of FTP over SSL -- the whole connection including Command channel and Data channel is encrypted so you can
not filter text in the Command channel. Plus if the IP is used as a access rule ? why also require the user name ??
which can easily be hacked if only the Data channel is encrypted.


Michael.


On Thu, 16 Sep 2004 18:05:56 +0200
"Comunicaciones Servinform" <comunicaciones@xxxxxxxxxxxxx> wrote:

> We need have our linux iptables firewall making an ftp user+ip association control in external public interface. 
> If ftp user+ip association is correct we need transfer ftp ssl connection to internal Ipswitch WS_FTP Server 5 with
> user db in sql server database. 
> 
> Firewall: 
> linux suse 8.1 kernel 2.4
> iptables v1.2.7a
> 
> Internal server:
> w2000 server
> sql server 2000
> ipswitch ws_ftp server 5.0 with forced ssl connections
> 
> It's possible? Any idea?. Thanks in advanced 
> 
> 
> 
> 


-- 
Michael Gale
Network Administrator
Utilitran Corporation


[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux