WU-FTPD 2.6.1 Release Notes (5900-2465, September 2012)

Example 2 The passive Clause
The following is an example of a passive clause:
passive address 10.0.1.15 10.0.0.0/8
In this example, clients connecting from the class A network - 10 are informed that the passive
connection is listening on the IP address 10.0.1.15.
passive ports 10.0.0.0/8 90 100
In this example, if a control connection from the class A network - 10 exits, the port range
within 90 and 100 is randomly selected for the daemon to listen.
NOTE: You cannot control the reported address in an IPv6 environment.
PORT and PASV Data Connection
This feature enables the site administrator to selectively allow PORT and PASV data connections.
Usually a connection is not established if the remote IP address of the data connection does
not match the remote IP address of the control connection data. You can specify multiple
passive addresses to handle complex or multi-gateway networks.
The syntax for selectively allowing PORT and PASV data connections is as follows:
pasv-allow <class> [ addrglob ...]
port-allow <class> [ addrglob ...]
NOTE: You cannot selectively allow PORT and PASV data connections in an IPv6 environment.
The keepalive Clause
The keepalive clause allows you to control network disconnect by setting the TCP SO_ALIVE
option for data sockets. You can specify yes to set the TCP option, or no to use the system
default settings, which is usually off. HP recommends that you set the keepalive clause to
yes to retain the network traffic connected.
The syntax for keepalive clause is as follows:
keepalive yes no
The /etc/ftpd/ftpaccess log Clause
The log clause is changed to allow logging transfers to both the /var/adm/syslog/syslog
and /var/adm/syslog/xferlog files. This option enables you to redirect the logging
messages for incoming and outgoing transfers to the /var/adm/syslog/syslog file. If
you do not specify this option, the messages are written to the /var/adm/syslog/xferlog
file.
The general syntax to redirect messages is as follows:
log sysloglog syslog+xferlog
File Retrieval
You can specify certain clauses to control whether a real or guest user is allowed access to
areas on the FTP site other than their home directories.
The syntax for the clauses that control access to areas on the FTP site is as follows:
restricted-uid <uid-range>[...]
restricted-gid <gid-range>[...]
unrestricted-uid <uid-range>[...]
unrestricted-gid <gid-range>[...]
NOTE: For all these clauses, you must copy the libraries /usr/lib/libnss_files.1
and /usr/lib/libdld.2 to the /usr/lib directory of the current environment.
WU-FTPD 2.6.1 features 23