Great Circle Associates Firewalls
(March 1994)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: anonymous ftp
From: alastair @ cadence . com (Alastair Young)
Date: Tue, 15 Mar 1994 10:08:20 -0800
To: firewalls @ GreatCircle . COM, z056716 @ uprc . com (LaCoursiere J. D. (Jeff))

The method we use is to provide each "private" user with a separate ftp
account with its own chroot environment and restrict the IP addresses which
can access that account. We use the wuftpd. We also drop source routed
packets to prevent IP address spoofing. It ain't perfect, but it seems to
have worked so far.

Al

---------------------------------------------------------------------------
Alastair Young                                     _               Ariel NH
Cadence Design Systems, Information Services     )/___     _     Red Hunter
555 River Oaks Parkway, 4B1                    __/(___)_*##/c 
San Jose CA 95134         Fax: (408)894-3487  / /\\|| \ /  \ Brakes'n'lites
alastair @
 cadence .
 com           (408)428-5278  \__/ ----'\__/  novel eh?
---------------------------------------------------------------------------
These statements and opinions are mine, not those of Cadence Design Systems


Indexed By Date Previous: IP replacement protocols & firewalls
From: John Wack <jwack @ nist . gov>
Next: Re: Source routing (was Re: Novice firewall questions)
From: alastair @ cadence . com (Alastair Young)
Indexed By Thread Previous: anonymous ftp
From: francis @ avalle . insoft . com (John [Francis] Stracke)
Next: Re: anonymous ftp
From: smb @ research . att . com

Google
 
Search Internet Search www.greatcircle.com