- 论坛徽章:
- 0
|
natd.conf:
interface vr0
log_denied yes
dynamic yes
unregistered_only yes
use_sockets yes
same_ports yes
punch_fw 600:100
ipfw.conf:
add 100 divert natd all from any to any in via xl0
add 200 check-state
add 300 skipto 800 tcp from any to any 21 out via xl0 setup keep-state
add 700 deny all from any to any in via xl0
add 701 deny all from any to any out via xl0
add 800 divert natd all from any to any out via xl0
add 801 allow all from any to any
然后,当我在 LAN 内向外网 FTP 服务器发起连接时,可以清楚的看到(ipfw list):
00621 allow tcp from 192.168.0.149 11598 to 61.152.242.18 20
00621 allow tcp from 61.152.242.18 20 to 192.168.0.149 11598
被动态增加了两条记录,而且有数据包通过!
但是,客户端的 ftp 还是不能下载数据!?
PORT Command successful.
LIST
150 Opening ASCII mode data connection for /bin/ls.
426 Data connection closed, transfer aborted.
Error loading directory...
请问这个是怎么回事情??? |
|