[DeleGate-En] Re: FTP Proxy TLS/AUTH problem
05 Jul 2006 13:17:03 GMT (Yutaka Sato)
The DeleGate Project

In message <_A3359@delegate-en.ML_> on 07/05/06(21:56:59)
you Steve Brown <> wrote:
 |Our Proxy was working really well, until we had reason to turn on TLS
 |support for FTP. Using DeleGate/9.2.3-pre8 (July 3, 2006).
 |Starting the proxy with:
 |~delegate/delegated STLS=fcl -P21  SERVER=ftp CACHE=no\
 |to provide TLS, also appears to change the AUTH behaviour, so that any
 |user trying to connect to an external site gets a 534 AUTH first error:
 | 220-extended FTP [MODE XDC][XDC/BASE64]
 | 220
 | Name (
 | 534 do AUTH first.
 | Login failed.
 |How can I get the behaviour with TLS enabled to be the same as it was

Your option,


requires all of its clients to be TLS enabled explicitly (by the
negotiation with AUTH TLS command) or implicitly.
To make TLS optional and accept both TLS and non-TLS clients, you
need to specify it as this:


  9 9   Yutaka Sato <>
 ( ~ )  National Institute of Advanced Industrial Science and Technology
_<   >_ 1-1-4 Umezono, Tsukuba, Ibaraki, 305-8568 Japan
Do the more with the less -- B. Fuller

