找回密码
 注册

QQ登录

只需一步,快速开始

搜索
查看: 3635|回复: 3

[讨论]IPCOP1.3端口映射的问题!!急!急!急~~~~~~~~~

[复制链接]
发表于 2003-11-25 16:42:39 | 显示全部楼层
我做FTP映射的,内网IP是192.168.0.188  我在external service access添加了21端口,在port forwarding 里面也添加了21端口 并且指向192.168.0.188:21
但是现在外网还是访问不了我的FTP,不知道为什么!还要添什么吗我是按照官方上的方法做的啊 但是还是没成功 求助啊!!!!
routeros
回复

使用道具 举报

 楼主| 发表于 2003-11-26 08:43:54 | 显示全部楼层
这是它网业上说的步骤!!我有做错还是漏做什么吗 达人帮看看吓



There are two different modes of communication used by ftp, active and passive mode. Active mode is pretty simple to forward but passive mode needs a bit more work to forward. Passive mode is usually used by users behind a firewall and also by most webbrowsers.

To forward active mode traffic to an internal ftp server you need to:

Open the web interface to IPCop.

Select the Services/External Service Access menu item.

Add an entry for:

TCP
Add an address* or blank for access from any address
Port 21
Check the Enabled box

Press the SAVE button.

Then select "Port Forwarding"

Add an entry for:

TCP, Source Port=21, IP address of your ftp server, Destination Port=21
Ensure the Enabled box is checked

Press the ADD button.

You should now have a working forwarding of active ftp to your internal ftp server. Now lets add configuration for passive ftp.

Passive ftp uses high ports for the data communication of ftp, if you don't want to add heaps of ports to your port forward configuration you will have to configure your ftp-server to use some specified ports, in proftpd this is done by adding a "PassivePorts" directive in your configuration, in wuftpd you use the "passive ports" configuration in the ftpaccess, etc.
Now that you have limited the passive ports you need to forward them to your internal ftp-server
To forward your passive ports to your internal ftp server:

Open the web interface to IPCop.

Select "Port Forwarding"

Add an entry for:

TCP, Source Port="your passive port", IP address of your ftp server, Destination Port="your passive port"
Ensure the Enabled box is checked

Press the ADD button.
Do this for all the ports you have configured your ftp-server to use in passive mode.
Now we have to fix a feature (present at least in version 0.1.1) in IPCop masqerading. Open a shell on your IPCop machine with ssh or on the console. Use vi to edit the file /etc/rc.d/rc.network and change the line:
"modprobe ip_masq_ftp ports=21,2121"
to:
"modprobe ip_masq_ftp in_ports=21"

Now restart your ftp-server and your IPCop computer to enable your changes and ftp should work both in active and passive mode.
routeros
回复

使用道具 举报

发表于 2003-12-5 02:52:45 | 显示全部楼层
1.如果你用的WIN2000,关掉自带的FTP功能(它用的也是21口)
2。你装了防火墙的话,看一下里面有没有一项“禁止外来访问者访问低端端口”(KFW有),关掉。
我也在学IPCOP,交流一下
我的 QQ:20823542
E-MAIL:JYCSEEDLING@21cn.com
routeros
回复

使用道具 举报

发表于 2004-2-5 21:55:15 | 显示全部楼层
做法是对的,是不是你的FTP没做对哟。
routeros
回复

使用道具 举报

您需要登录后才可以回帖 登录 | 注册

本版积分规则

QQ|Archiver|手机版|小黑屋|软路由 ( 渝ICP备15001194号-1|渝公网安备 50011602500124号 )

GMT+8, 2024-11-6 03:30 , Processed in 0.089742 second(s), 4 queries , Gzip On, Redis On.

Powered by Discuz! X3.5 Licensed

© 2001-2024 Discuz! Team.

快速回复 返回顶部 返回列表