[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Patch for gss ftp client to work through stateful firewalls

>>>>> "Markus" == Markus Moeller <markus_moeller@compuserve.com> writes:

    Markus> I have a patch for the gss ftp client to work with my
    Markus> proftpd gss module http://sourceforge.net/projects/gssmod/
    Markus> which switches to CCC mode just before sending the
    Markus> PORT/PASV/EPSV/EPRT command.  This allows stateful
    Markus> firewalls like Checkpoint to inspect the traffic. You can
    Markus> download it from
    Markus> http://sourceforge.net/project/showfiles.php?group_id=70951.

And of course completely defeats the security of your FTP connection
by using a clear non-integrity-protected channel.