Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.

vsftpd pitanje - problem

[es] :: Linux/UNIX serveri i servisi :: vsftpd pitanje - problem

[ Pregleda: 2152 | Odgovora: 8 ] > FB > Twit

Postavi temu Odgovori

Autor

Pretraga teme: Traži
Markiranje Štampanje RSS

amon77
BGD

Član broj: 157582
Poruke: 23
93.86.45.*



Profil

icon vsftpd pitanje - problem08.01.2009. u 20:49 - pre 186 meseci
Imam jedan problem sa podesavanjem vsftpd. Sa masine na kojoj je podignut servis mogu bez problema da se konektujem kao anonymous na ftp server i iz shella i preko links-a medjutim ni jedna druga masina u istom lan-u ne moze da se konektuje kroz neki od browsera.
Drugi racunari u mozilli prikazu stranicu "Index of ftp://192.168.1.5/" ali bez spiska fajlova koji se nalaze u /var/ftp/(i koji se normalno vide kad se pristupa sa masine na kojoj je podignut servis) a kad pokusam da je osvezim izbacuje gresku "425 Failed to establish connection."


Long you live and high you fly
And smiles you'll give and tears you'll cry
And all you touch and all you see
Is all your life will ever be.
 
Odgovor na temu

Jbyn4e

Član broj: 422
Poruke: 6049
*.ptt.rs.



+257 Profil

icon Re: vsftpd pitanje - problem08.01.2009. u 20:55 - pre 186 meseci
Firewall?
Konfiguracija vsftpd?
Malo vise informacija?

Kad sve ostalo zakaže, pročitaj uputstvo...
 
Odgovor na temu

Srđan Pavlović
Specijalna Edukacija i Rehabilitacija MNRO
Vojvodina, Bačka Palanka

Član broj: 139340
Poruke: 5571
93.86.4.*

Sajt: www.oligofrenolog.com


+382 Profil

icon Re: vsftpd pitanje - problem08.01.2009. u 20:55 - pre 186 meseci
Mozda ovi linkovi pomognu:

http://www.linuxhomenetworking..._Ch15_:_Linux_FTP_Server_Setup

https://www.redhat.com/docs/ma...-guide/s1-ftp-vsftpd-conf.html

Citat:
ni jedna druga masina u istom lan-u ne moze da se konektuje kroz neki od browsera.


Jesi siguran da ti je local_enable setovano na yes u vsftpd konfiguracionom fajlu?
 
Odgovor na temu

amon77
BGD

Član broj: 157582
Poruke: 23
93.86.45.*



Profil

icon Re: vsftpd pitanje - problem08.01.2009. u 20:59 - pre 186 meseci
Firewall nije uopste podesavan... na racunaru nije podignut BIND ali pretpostavljam da to ne bi trebao da bude problem...
Ima jos jedna stvar... sa drugih racunara koji rade pod Windows XP mogu da se logujem iz cmd-a preko ftp 192.168.1.5 bez problema... Pretpostavljam da to iskljucuje firewall kao problem...
Long you live and high you fly
And smiles you'll give and tears you'll cry
And all you touch and all you see
Is all your life will ever be.
 
Odgovor na temu

amon77
BGD

Član broj: 157582
Poruke: 23
93.86.45.*



Profil

icon Re: vsftpd pitanje - problem08.01.2009. u 21:07 - pre 186 meseci
vsftpd.conf izgleda ovako:

# Example config file /etc/vsftpd/vsftpd.conf
#
# The default compiled in settings are fairly paranoid. This sample file
# loosens things up a bit, to make the ftp daemon more usable.
# Please see vsftpd.conf.5 for all compiled in defaults.
#
# READ THIS: This example file is NOT an exhaustive list of vsftpd options.
# Please read the vsftpd.conf.5 manual page to get a full idea of vsftpd's
# capabilities.


#moje izmene
# When enabled, this prevents vsftpd from asking for an anonymous password - the anonymous user will log straight in.
no_anon_password=yes
#
# This option represents a directory which vsftpd will try to change into after an anonymous login. Failure is silently ignored.
#anon_root=/var/ftp/pub/
#
# This is the name of the user we use for handling anonymous FTP. The home directory of this user is the root of the anonymous FTP area.
#
ftp_username=ftp
#moje izmene ////kraj


# Allow anonymous FTP? (Beware - allowed by default if you comment this out).
anonymous_enable=YES
#
# Uncomment this to allow local users to log in.
local_enable=YES
#
# Uncomment this to enable any form of FTP write command.
write_enable=YES
#
# Default umask for local users is 077. You may wish to change this to 022,
# if your users expect that (022 is used by most other ftpd's)
#local_umask=022
#
# Uncomment this to allow the anonymous FTP user to upload files. This only
# has an effect if the above global write enable is activated. Also, you will
# obviously need to create a directory writable by the FTP user.
#anon_upload_enable=YES
#
# Uncomment this if you want the anonymous FTP user to be able to create
# new directories.
#anon_mkdir_write_enable=YES
#
# Activate directory messages - messages given to remote users when they
# go into a certain directory.
dirmessage_enable=YES
#
# Activate logging of uploads/downloads.
xferlog_enable=YES
#
# Make sure PORT transfer connections originate from port 20 (ftp-data).
connect_from_port_20=YES
#
# If you want, you can arrange for uploaded anonymous files to be owned by
# a different user. Note! Using "root" for uploaded files is not
# recommended!
#chown_uploads=YES
#chown_username=whoever
#
# You may override where the log file goes if you like. The default is shown
# below.
#xferlog_file=/var/log/vsftpd.log
#
# If you want, you can have your log file in standard ftpd xferlog format
xferlog_std_format=YES
#
# You may change the default value for timing out an idle session.
#idle_session_timeout=600
#
# You may change the default value for timing out a data connection.
#data_connection_timeout=120
#
# It is recommended that you define on your system a unique user which the
# ftp server can use as a totally isolated and unprivileged user.
#nopriv_user=ftpsecure
#
# Enable this and the server will recognise asynchronous ABOR requests. Not
# recommended for security (the code is non-trivial). Not enabling it,
# however, may confuse older FTP clients.
#async_abor_enable=YES
#
# By default the server will pretend to allow ASCII mode but in fact ignore
# the request. Turn on the below options to have the server actually do ASCII
# mangling on files when in ASCII mode.
# Beware that turning on ascii_download_enable enables malicious remote parties
# to consume your I/O resources, by issuing the command "SIZE /big/file" in
# ASCII mode.
# These ASCII options are split into upload and download because you may wish
# to enable ASCII uploads (to prevent uploaded scripts etc. from breaking),
# without the DoS risk of SIZE and ASCII downloads. ASCII mangling should be
# on the client anyway..
#ascii_upload_enable=YES
#ascii_download_enable=YES
#
# You may fully customise the login banner string:
#ftpd_banner=Welcome to blah FTP service.
#
# You may specify a file of disallowed anonymous e-mail addresses. Apparently
# useful for combatting certain DoS attacks.
#deny_email_enable=YES
# (default follows)
#banned_email_file=/etc/vsftpd.banned_emails
#
# You may specify an explicit list of local users to chroot() to their home
# directory. If chroot_local_user is YES, then this list becomes a list of
# users to NOT chroot().
#chroot_list_enable=YES
# (default follows)
#chroot_list_file=/etc/vsftpd.chroot_list
#
# You may activate the "-R" option to the builtin ls. This is disabled by
# default to avoid remote users being able to cause excessive I/O on large
# sites. However, some broken FTP clients such as "ncftp" and "mirror" assume
# the presence of the "-R" option, so there is a strong case for enabling it.
#ls_recurse_enable=YES

pam_service_name=vsftpd
userlist_enable=YES
#enable for standalone mode
listen=YES
tcp_wrappers=YES

Long you live and high you fly
And smiles you'll give and tears you'll cry
And all you touch and all you see
Is all your life will ever be.
 
Odgovor na temu

Jbyn4e

Član broj: 422
Poruke: 6049
*.ptt.rs.



+257 Profil

icon Re: vsftpd pitanje - problem08.01.2009. u 21:38 - pre 186 meseci
Citat:
amon77: Firewall nije uopste podesavan... na racunaru nije podignut BIND ali pretpostavljam da to ne bi trebao da bude problem...
Ima jos jedna stvar... sa drugih racunara koji rade pod Windows XP mogu da se logujem iz cmd-a preko ftp 192.168.1.5 bez problema... Pretpostavljam da to iskljucuje firewall kao problem...


Ne, apsolutno nisi u pravu. Deluje mi da firewall koji nisi podesavao (a koji mozda radi - daj izlaz od iptables -L) blokira odredjeni port - a da ti to ne znas. Zato ti i radi iz cmd-a, a ne radi iz browsera (imao sam takav jedan slucaj).

Pogledaj ipak prvo firewall, pa ako nije to - daj malo izvoda iz logova da vidimo sta se desava.

Kad sve ostalo zakaže, pročitaj uputstvo...
 
Odgovor na temu

amon77
BGD

Član broj: 157582
Poruke: 23
93.86.45.*



Profil

icon Re: vsftpd pitanje - problem08.01.2009. u 21:45 - pre 186 meseci
Citat:
Jbyn4e: Ne, apsolutno nisi u pravu. Deluje mi da firewall koji nisi podesavao (a koji mozda radi - daj izlaz od iptables -L) blokira odredjeni port - a da ti to ne znas. Zato ti i radi iz cmd-a, a ne radi iz browsera (imao sam takav jedan slucaj).

Pogledaj ipak prvo firewall, pa ako nije to - daj malo izvoda iz logova da vidimo sta se desava.


IP tables:

Chain INPUT (policy ACCEPT)
target prot opt source destination
RH-Firewall-1-INPUT all -- anywhere anywhere

Chain FORWARD (policy ACCEPT)
target prot opt source destination
RH-Firewall-1-INPUT all -- anywhere anywhere

Chain OUTPUT (policy ACCEPT)
target prot opt source destination

Chain RH-Firewall-1-INPUT (2 references)
target prot opt source destination
ACCEPT all -- anywhere anywhere
ACCEPT icmp -- anywhere anywhere icmp any
ACCEPT ipv6-crypt-- anywhere anywhere
ACCEPT ipv6-auth-- anywhere anywhere
ACCEPT udp -- anywhere 224.0.0.251 udp dpt:5353
ACCEPT udp -- anywhere anywhere udp dpt:ipp
ACCEPT all -- anywhere anywhere state RELATED,ESTABLISHED
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ssh
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:http
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:ftp
ACCEPT tcp -- anywhere anywhere state NEW tcp dpt:smtp
REJECT all -- anywhere anywhere reject-with icmp-host-prohibited

Long you live and high you fly
And smiles you'll give and tears you'll cry
And all you touch and all you see
Is all your life will ever be.
 
Odgovor na temu

Jbyn4e

Član broj: 422
Poruke: 6049
*.ptt.rs.



+257 Profil

icon Re: vsftpd pitanje - problem08.01.2009. u 23:01 - pre 186 meseci
Ti imas neka pravila, ali ne znam da li je dovoljno, a nemam sad vremena da gledam detaljno...
Ovo je nesto redhat-ovo koliko vidim, pa pretpostavljam da mozes da testiras:
Code:

/etc/init.d/iptables stop

pa onda da probas. Ako ne radi ni sa tim - onda nesto drugo ne stima. Posle toga podigni ponovo firewall - zameni stop gore sa start.

Kad sve ostalo zakaže, pročitaj uputstvo...
 
Odgovor na temu

amon77
BGD

Član broj: 157582
Poruke: 23
*.eunet.yu.



Profil

icon Re: vsftpd pitanje - problem09.01.2009. u 07:53 - pre 186 meseci
Citat:
Jbyn4e: Ti imas neka pravila, ali ne znam da li je dovoljno, a nemam sad vremena da gledam detaljno...
Ovo je nesto redhat-ovo koliko vidim, pa pretpostavljam da mozes da testiras:
Code:

/etc/init.d/iptables stop

pa onda da probas. Ako ne radi ni sa tim - onda nesto drugo ne stima. Posle toga podigni ponovo firewall - zameni stop gore sa start.


Bio si u pravu, kad se zaustavi service iptables sve radi kako treba.

Sad ostaje da se podesi iptables...

Hvala na pomoci!!!
Long you live and high you fly
And smiles you'll give and tears you'll cry
And all you touch and all you see
Is all your life will ever be.
 
Odgovor na temu

[es] :: Linux/UNIX serveri i servisi :: vsftpd pitanje - problem

[ Pregleda: 2152 | Odgovora: 8 ] > FB > Twit

Postavi temu Odgovori

Navigacija
Lista poslednjih: 16, 32, 64, 128 poruka.