In message <Pine.BSI.4.33.0110291208290.10000-00000X@eram.esi.com.au> on 10/29/01(13:19:14) you Damian McGuckin <pmacqbdyi-mxhgu47fvp3w.ml@delegate.org> wrote: |I am using NcFTP which does this automatically if it detects some strange |behaviour in the site or gets confused. There are many browsers and ftp |clients which do this including Mozilla. I don't know why but it has |something to do with the handshake. It might even have to do with the |proxy nature. It probably means that DeleGate is far too strict in it's |interpretation of the RFC. I am sure you understand it because you have |a whole part of your web page that obviously tries to get around this |problem where you talk about | | You must show a valid E-mail address to access this server. If | you have any difficulty to do so with your WWW browser, enter | your E-mail address here ... I'm running the FTP-DeleGate for FTP.DELEGATE.ORG with a parameter "AUTH=anonftp:smtp-vrfy" <URL:http://www.delegate.org/delegate/Manual.htm#AUTH> which requires valid E-mail address as a password for anonymous login. (I heard that some other FTP servers have such option too) This is partly because our organization (aist.go.jp) requires identifying users of its intellectual property including softwares like DeleGate. |> |tells me that it cannot connect with me. Going into passive mode tells me |> |that PASV is disabled. |> |> From the beginning of this month, the FTP server ftp.delegate.org |> has been in a firewall which does not pass PASV command. | |I assume this limitation is not from DeleGate. It is done by the firewall (maybe FireWall-1) of the organization. |There are many people who connect from sites that only allow the PASV |command and REJECT the use of the PORT command. Passive is far more |secure than PORT. We use PASSIVE as the default here for everything. Of course I asked the administrator of the firewall to through pass the PASV command (just for port #20) when I moved FTP.DELEGATE.ORG to the current network of AIST.GO.JP at the beginning of this month, but the answer was "no". I'm planing to move the host to the network on fiber to my home:-) and fully controlled by myself, in near future. Untill then I expect such users to download via HTTP (gatewayed to the FTP server) <URL:http://www.delegate.org/delegate/download/>. Cheers, Yutaka -- @ @ Yutaka Sato <pfqcabdyi-mxhgu47fvp3w.ml@delegate.org> http://www.delegate.org/y.sato/ ( - ) National Institute of Advanced Industrial Science and Technology (AIST) _< >_ 1-1-4 Umezono, Tsukuba, Ibaraki, 305-8568 Japan