[geeks] ipfilter question - was:DHCP silliness

Joshua D Boyd geeks at sunhelp.org
Sun Nov 25 10:42:48 CST 2001


On Sun, Nov 25, 2001 at 09:35:38AM -0600, Mike Hebel wrote:
> PLW> (All of basenji.com sits behind one NAT address, and incoming ports are
> PLW> routed to the system running the appropriate service.  All internal
> PLW> systems ('bout 9 of them) use one box for DNS.)
> 
> I gotta ask - were you able to get active FTP clients running under
> these conditions?
> 
> I'm having a helluva time getting any FTP to work behind a NAT'd SpeedStream
> and an OpenBSD 2.8 SS2 boxen on a DSL line.  I can get anything else done with
> simple hole punches but FTP and "keep state" just doesn't seem to want to work.
> 
> It's almost like ipfilter is ignoring any attempt to make an outgoing
> port automatically.

Using mozilla, FTP usually fails when behind the NAT.  however, comandline FTP
just works, and I couldn't tell you why.

-- 
Joshua D. Boyd



More information about the geeks mailing list