Re: SQUID AND CISCO PIX FIREWALL

From: Pavel P. Zabortsev <ppz@dont-contact.us>
Date: Wed, 3 Mar 1999 09:57:24 +0300

>Our Cisco Pix Firewall has all outgoing traffic disabled apart from Port
80,
>21, 20. Using a web browser through squid or directly we can surf internet
>pages and download any file from an FTP server. However, if a file needs
to
>be downloaded via HTTP it fails! It seems FTP via HTTP uses a different
>port?? If so which one? If we allow all traffic out of the firewall, FTP
>over HTTP works fine!

Browsers use PASSIVE FTP to download files via FTP.
Does you PIX pass PASSIVE FTP?

Yours sincerely,
Pavel

-----------------------------------------------------------------
Pavel P. Zabortsev e-mail: ppz@cdu.elektra.ru, ppz@usa.net
Software engineer voice: 927-9523, 26-23 (corp)
CDO UPS of Russia fax: 220-6542
Moscow, Russia ICQ: 15371542
-----------------------------------------------------------------
Received on Tue Mar 02 1999 - 23:51:48 MST

This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:45:07 MST