RE: Tunneling FTP

2009-01-19 Thread Michael Wiedmann
Rui Santos wrote:

> That is not entirely true. If Michael sets up an ftp server with EPSV
> (Extended PaSsiVe Mode ), he will be able to select witch ports to
> use. Pure-ftpd supports this...

Thanks for this clarification.
Unfortunately the used FTP server is an embedded one which does not 
support EPSV (have to check this again).
Anyway, this was useful information.

Michael




Re: Tunneling FTP

2009-01-19 Thread Rui Santos
Matt Johnston wrote:
> On Mon, Jan 19, 2009 at 02:28:28PM +0100, Michael Wiedmann wrote:
>   
>> I get a FTP prompt and can login successfully. But obviously this tunnel is 
>> not sufficient for the FTP data connections (even in passive mode).
>>
>> Before I dig deeper into this:
>> Is there a way to get FTP (active or passive mode) tunneled using dropbear?
>> If yes, how should I configure the client/server side?
>> 
>
> I don't think it's easy to do - in active or passive mode
> the FTP data port is chosen dynamically.
That is not entirely true. If Michael sets up an ftp server with EPSV
(Extended PaSsiVe Mode ), he will be able to select witch ports to use.
Pure-ftpd supports this...
>   Could you set up a
> small http (or socks) proxy on the server and point the
> client at that (via the tunnel)?
>
> Matt
>   
Rui Santos

>
>
>
>   

-- 

Cumprimentos

*Rui Santos*
Dep. Testes

*GrupoPIE Portugal, S.A.*
Tel:   +351 252 290 600
Fax:  +351 252 290 601

Email: rsan...@grupopie.com 
Web: www.grupopie.com 

/WinREST /EVERYWHERE





RE: Tunneling FTP

2009-01-19 Thread Michael Wiedmann
Matt Johnston wrote:
 
> I don't think it's easy to do - in active or passive mode
> the FTP data port is chosen dynamically.  Could you set up a
> small http (or socks) proxy on the server and point the
> client at that (via the tunnel)?

This will not be that easy, but I will think about it.

The 'client' in my case is an embedded FTP server which is
accessed from a proprietary GUI running on a remote host.
This FTP client does not work with URLs.

Michael




Re: Tunneling FTP

2009-01-19 Thread Matt Johnston
On Mon, Jan 19, 2009 at 02:28:28PM +0100, Michael Wiedmann wrote:
> I get a FTP prompt and can login successfully. But obviously this tunnel is 
> not sufficient for the FTP data connections (even in passive mode).
> 
> Before I dig deeper into this:
> Is there a way to get FTP (active or passive mode) tunneled using dropbear?
> If yes, how should I configure the client/server side?

I don't think it's easy to do - in active or passive mode
the FTP data port is chosen dynamically.  Could you set up a
small http (or socks) proxy on the server and point the
client at that (via the tunnel)?

Matt