Re: [squid-users] squid/ftps

From: Henrik Nordstrom <henrik_at_henriknordstrom.net>
Date: Thu, 28 Aug 2008 00:01:54 +0200

On tor, 2008-08-21 at 12:22 +0200, Matus UHLAR - fantomas wrote:

> You can configure the client to abuse squid by using CONNECT request to FTPS
> ports, but the only thing you achieve is controlling on squid's side where
> (IP:port) the clients may connect to...

And since you need to support the data channel in PASV mode it's
effectively reduced to just IP + any port >=1024. (PORT and default
datachannel mode is impossible to tunnel via an HTTP proxy as they need
incoming connections to the client..)

For this kind of applications one really SHOULD use a SOCKS proxy, not
an HTTP proxy..

Regards
Henrik

Received on Wed Aug 27 2008 - 22:02:02 MDT

This archive was generated by hypermail 2.2.0 : Thu Aug 28 2008 - 12:00:05 MDT