nfoata

Forum Replies Created

Viewing 3 posts - 1 through 3 (of 3 total)
  • Author
    Posts
  • in reply to: FTP server configuration in a DMZ #47605

    nfoata
    Member

    Thanks a lot bbozo 😀 .

    You are right from the Interface, it directly goes well.
    I didn’t know where to find the PREROUTING in Zeroshell.

    Now, my FTP server is available from the outside.

    Solution gave just before (abstract) :
    On the left, section ‘Network‘, menu ‘Router
    At the top, select the tabbed panel named ‘Virtual Server’
    and enter the redirection.

    in reply to: FTP server configuration in a DMZ #47603

    nfoata
    Member

    The situation has involved.
    I only added information in the PREROUTING chain.

    With the command line iptables , I did :

    iptables -t nat -A PREROUTING -p udp -i ETH01 --destination-port 21 -j DNAT --to-destination=192.168.2.2
    iptables -t nat -A PREROUTING -p tcp -i ETH01 --destination-port 21 -j DNAT --to-destination=192.168.2.2
    iptables -t nat -A PREROUTING -p udp -i ETH01 --destination-port 20 -j DNAT --to-destination=192.168.2.2
    iptables -t nat -A PREROUTING -p tcp -i ETH01 --destination-port 20 -j DNAT --to-destination=192.168.2.2

    Now, when I try from outside, I can connect and just after I have the following message.

    e.g :
    > ftp
    Connected to
    Connection closed by the remote host

    in reply to: FTP server configuration in a DMZ #47602

    nfoata
    Member

    First, thanks to answer.

    In the firewall, I only can access to the following chains :
    – FORWARD
    – INPUT
    – OUTPUT

    I think, to redirect port, I have to access to the PRE_ROUTING chain ?

    I try to put rules on the FORWARD chain such as :
    * Destination IP : IP of the FTP server (192.68.2.2)
    * INPUT : ETH01
    * OUTPUT : ETH02
    * PROTOCOLE matching : TCP (source port 21 , destination port 21)

    I did the same with 20 port.

    But, it didn’t work (with this rules). I can’t connect from outside.

Viewing 3 posts - 1 through 3 (of 3 total)