Re: Conditional passive FTP rules on firewall

2005-08-09 Thread Stuart Henderson
--On 08 August 2005 23:58 -0400, Jason Haag wrote: Ftp access works in active mode via ftp-proxy. Passive mode does *not* work since I block client traffic not going to the proxies via pf. Is it possible to create conditional pf rules to pass certain traffic to a host *after* a connection to a

Conditional passive FTP rules on firewall

2005-08-08 Thread Jason Haag
Hi, I am trying to setup an (mostly) isolated network to clean infected PCs. Based on my personal judgment of security vs. convenience I would like to allow the clients to use certain web and ftp sites. Web site access is controlled via squid (transparent). Ftp access works in active mode via ftp