ftpget and Firewall (NOVM-1.1.2 ftpget problems)

From: Harry Venema <harry@dont-contact.us>
Date: Fri, 27 Feb 1998 12:01:48 +0000

>I am setting up a squid proxy server (NOVM-1.1.20) on a RedHat 4.2
>Linux server
>But I have encountered a problem with ftpget i can't explain.
>It takes minute's to get a directory listing on the clients webbrowser
>(Netscape 4.04 Linux) screen.
>Also when retrieving a 1K file it takes minutes to get the data to
>the browser.
>A FTP session bypassing the squid proxy shows the directory contents
>almost immediately and transfering the data takes not even a second.

>It looks like that the data is send to the client only after a timeout
>occcurs in ftpget.

When i disable the firewall the above problems do not occur.
However a normal ftp/ncftp session run on the proxy server itself
has absolutely no problems with the firewall.
Can anybody explain why ftpget has problems with firewalling and a
normal ftp/ncftp session run on the proxy server does not?


Harry Venema               | VCD Services B.V
email: harry@vcd.nl        | Osloweg 131
URL  : http://www.vcd.nl   | 9723 BK Groningen, the Netherlands
#include <stddisclaimer.h> | Voice +31 50 5975500 Fax: +31 50 5975597
... Our continuing mission: To seek out knowledge of C, to explore
strange UNIX commands, and to boldly code where no one has man page 4
