| Summary: | ftpd open conn in low portrange if client in passive mode | ||
|---|---|---|---|
| Product: | Base System | Reporter: | dmitry <dmitry> |
| Component: | bin | Assignee: | Mike Heffner <mikeh> |
| Status: | Closed FIXED | ||
| Severity: | Affects Only Me | ||
| Priority: | Normal | ||
| Version: | 5.0-CURRENT | ||
| Hardware: | Any | ||
| OS: | Any | ||
State Changed From-To: open->feedback I can't reproduce this problem. Is this still a problem for you? Responsible Changed From-To: freebsd-bugs->mikeh I'll handle feedback. State Changed From-To: feedback->closed Feedback timeout. |
when ftp from machine running current to 4.0-STABLE and on client envir set FTP_PASSIVE_MODE=YES i see in tcpdump out that: 552 crawl.shel.asbaikaltv.ru.ftp > alien.shel.asbaikaltv.ru.audio-activmail: P 936 alien.shel.asbaikaltv.ru.audio-activmail >crawl.shel.asbaikaltv.ru.ftp: P 938 crawl.shel.asbaikaltv.ru.ftp >alien.shel.asbaikaltv.ru.audio-activmail: P 256 alien.shel.asbaikaltv.ru.video-activmail >crawl.shel.asbaikaltv.ru.1626: 853 crawl.shel.asbaikaltv.ru.1626 > alien.shel.asbaikaltv.ru.video-activmail: 002 alien.shel.asbaikaltv.ru.video-activmail >crawl.shel.asbaikaltv.ru.1626: ie ftpd open data connections on lowrange ports ftpd start in inetd: ftp stream tcp nowait root /usr/libexec/ftpd ftpd -l sysctl set to: net.inet.ip.portrange.lowfirst: 1023 net.inet.ip.portrange.lowlast: 600 net.inet.ip.portrange.first: 1024 net.inet.ip.portrange.last: 5000 net.inet.ip.portrange.hifirst: 49152 net.inet.ip.portrange.hilast: 65535 in ftpd manpages i see U In previous versions of ftpd, when a passive mode client request- ed a data connection to the server, the server would use data ports in the range 1024..4999. Now, by default, the server will use data ports in the range 49152..65535. Specifying this option will revert to the old behavior. ftpd bug or manpages must be fixed? Fix: i don't know yet :( How-To-Repeat: ftp to current or 4.0-STABLE end use tcpdump to see traffic when download something