Article delegate-en/2337 of [1-5169] on the server localhost:119
  upper oldest olders older1 this newer1 newers latest
search
[Top/Up] [oldest] - [Older+chunk] - [Newer+chunk] - [newest + Check]
[Reference:<_A2335@delegate-en.ML_>]
Newsgroups: mail-lists.delegate-en

[DeleGate-En] Re: FTP TLS Proxy Problem
09 Jul 2003 15:23:45 GMT feedback@delegate.org (Yutaka Sato)


Hi,

On 07/09/03(06:44) you "Bryan Dees" <phueabdyi-ry4zqci2fjvr.ml@ml.delegate.org> wrote
in <_A2335@delegate-en.ML_>
 |I installed the delegate8.6.0-snap03062408.tar build per your
 |instructions below and using the following script i'm still unable to
 |proxy ftp-data packets back to the client. Last thing I see on the
 |delegate log is the ftp port establishment. On the client I wait for a
 |password prompt after seeing the AUTH/TLS. TCPDUMP show's nothing beyond

I think exact output in the log of DeleGate's and on the screen of
FTP client will be so helpful.

 |the FTP establish, no data packets, etc.. Here's the commands i'm using,
 |maybe you can point out what i'm doing wrong:
 |
 |#!/bin/sh
 |# 156.137.50.29  -- inside addr
 |# 156.137.90.10  -- outside addr
 |
 |export ADMIN="root@localhost"
 |export DGBASE="/usr/src/delegate8.6.0-snap03062408"
 |export DGROOT="/usr/src/delegate8.6.0-snap03062408/src"
 |export LIBPATH="$DGBASE/lib"
 |
 |HOST="156.137.50.49"
 |FTPSVR="$HOST:21"
 |
 |# Proxy Connect:Enterprise SSL FTP
 |$DGROOT/delegated \
 |  -P10021 \
A|  -v \
 |  PERMIT="*:*:*" \
 |  REACHABLE="*" \
B|  RELAY=proxy, delegate \
 |  SERVER=ftp://$FTPSVR/  \
C|  FTPCONTROL=nopasv \
 |  SRCIF="156.137.90.10:*:tcpbound" \
 |# SRCIF="156.137.50.29:*:tcpbound" \
 |# CMAP=sslway:FCL:ftp-data CMAP="sslway -St:FCL:ftp" SERVER=ftp
 |# CMAP="sslway -st:FCL:ftp:*:*" CMAP="sslway
D|-ad:FCL:sslway:ftp-data:*:*"
E|
 |  CMAP="sslway -st:FCL:ftp" CMAP=sslway:FCL:ftp-data:*:*
 |  CMAP="sslway -st:FSV:ftp" CMAP=sslway:FSV:ftp-data:*:*

A. -vv will give ous more information
B. this will be interpreted as RELAY="proxy," and unknown parameter "delegate"
C. FTPCONTROL is unknown parameter
D. unknown parameter "-ad:..."
E. this empty line hides following CMAPs

Cheers,
Yutaka
--
  @ @ Yutaka Sato <y.sato@delegate.org> http://www.delegate.org/y.sato/
 ( - ) National Institute of Advanced Industrial Science and Technology (AIST)
_<   >_ 1-1-4 Umezono, Tsukuba, Ibaraki, 305-8568 Japan
Do the more with the less -- B. Fuller

  admin search upper oldest olders older1 this newer1 newers latest
[Top/Up] [oldest] - [Older+chunk] - [Newer+chunk] - [newest + Check]
@_@V