[Comm] Запуск vsftpd

Kondratenko Boris =?iso-8859-1?q?kondor71_=CE=C1_yandex=2Eru?=
Сб Апр 16 18:26:53 MSD 2005


Вот что пишет Gftp при попытке подключиться:


> Поиск kondor7.yasenevo.2com
> Попытка kondor7.yasenevo.2com:21
> Невозможно подключиться к kondor7.yasenevo.2com: Connection refused

Вот конфиг vsftpd:


> # The configuration file for vsftpd.
> #
> # The default compiled in settings are fairly paranoid. This sample file
> # loosens things up a bit, to make the ftp daemon more usable.
> # Please see vsftpd.conf(5) for all compiled in defaults.
> #
> # READ THIS: This example file is NOT an exhaustive list of vsftpd options.
> # Please read the vsftpd.conf(5) manual page to get a full idea of vsftpd's
> # capabilities.
> #
> # Uncomment this to disallow the PORT method of obtaining a data connection.
> #port_enable=NO
> #
> # Uncomment this to disallow the PASV method of obtaining a data connection.
> #pasv_enable=NO
> #
> # Allow anonymous FTP? (Beware - allowed by default if you comment this out).
> anonymous_enable=YES
> #
> # Uncomment this to allow local users to log in.
> local_enable=YES
> #
> # Uncomment this to enable any form of FTP write command.
> #write_enable=YES
> #
> # Default umask for local users is 077. You may wish to change this to 022,
> # if your users expect that (022 is used by most other ftpd's)
> local_umask=022
> #
> # The minimum port to allocate for PASV style data connections.
> # Can be used to specify a narrow port range to assist firewalling.
> # The default is shown below.
> #pasv_min_port=49152
> #
> # The maximum port to allocate for PASV style data connections.
> # Can be used to specify a narrow port range to assist firewalling.
> # The default is shown below.
> #pasv_max_port=65535
> #
> # Uncomment this to allow the anonymous FTP user to upload files. This only
> # has an effect if the above global write enable is activated. Also, you will
> # obviously need to create a directory writable by the FTP user.
> anon_upload_enable=YES
> #
> # Uncomment this if you want the anonymous FTP user to be able to create
> # new directories.
> anon_mkdir_write_enable=YES
> #
> # Activate directory messages - messages given to remote users when they
> # go into a certain directory.
> dirmessage_enable=YES
> #
> # Activate logging of uploads/downloads.
> xferlog_enable=YES
> #
> # Make sure PORT transfer connections originate from port 20 (ftp-data).
> connect_from_port_20=YES
> #
> # If you want, you can arrange for uploaded anonymous files to be owned by
> # a different user. Note! Using "root" for uploaded files is not
> # recommended!
> #chown_uploads=YES
> #chown_username=whoever
> #
> # You may override where the log file goes if you like. The default is shown
> # below.
> #xferlog_file=/var/log/vsftpd.log
> #
> # If you want, you can have your log file in standard ftpd xferlog format
> #xferlog_std_format=YES
> #
> # You may change the default value for timing out an idle session.
> #idle_session_timeout=600
> #
> # You may change the default value for timing out a data connection.
> #data_connection_timeout=120
> #
> # It is recommended that you define on your system a unique user which the
> # ftp server can use as a totally isolated and unprivileged user.
> #nopriv_user=novsftpd
> #
> # Enable this and the server will recognise asynchronous ABOR requests. Not
> # recommended for security (the code is non-trivial). Not enabling it,
> # however, may confuse older FTP clients.
> #async_abor_enable=YES
> #
> # By default the server will pretend to allow ASCII mode but in fact ignore
> # the request. Turn on the below options to have the server actually do ASCII
> # mangling on files when in ASCII mode.
> # Beware that turning on ascii_download_enable enables malicious remote parties
> # to consume your I/O resources, by issuing the command "SIZE /big/file" in
> # ASCII mode.
> # These ASCII options are split into upload and download because you may wish
> # to enable ASCII uploads (to prevent uploaded scripts etc. from breaking),
> # without the DoS risk of SIZE and ASCII downloads. ASCII mangling should be
> # on the client anyway..
> ascii_upload_enable=YES
> ascii_download_enable=YES
> #
> # You may fully customise the login banner string:
> ftpd_banner=Welcome to Kondor7 FTP service.
> #
> # You may specify a file of disallowed anonymous e-mail addresses. Apparently
> # useful for combatting certain DoS attacks.
> #deny_email_enable=YES
> # (default follows)
> #banned_email_file=/etc/vsftpd/banned_emails
> #
> # You may specify an explicit list of local users to chroot() to their home
> # directory. If chroot_local_user is YES, then this list becomes a list of
> # users to NOT chroot().
> # Warning: these features have non-trivial security implications, especially
> # if the users also have shell access. Only enable if you know what you are
> # doing (and you probably don't).
> chroot_list_enable=YES
> # (default follows)
> chroot_list_file=/etc/vsftpd/chroot_list
> #
> # You may activate the "-R" option to the builtin ls. This is disabled by
> # default to avoid remote users being able to cause excessive I/O on large
> # sites. However, some broken FTP clients such as "ncftp" and "mirror" assume
> # the presence of the "-R" option, so there is a strong case for enabling it.
> #ls_recurse_enable=YES
> #
> # If enabled, all user and group information in directory listings will be
> # displayed as "ftp".
> # The default is to hide user and group information.
> #hide_ids=YES
> #
> # If enabled, vsftpd will display directory listings with the time in your
> # local time zone. The default is to display GMT. The times returned by the
> # MDTM FTP command are also affected by this option.
> #use_localtime=YES
> 
Вот конфиг из /etc/xinet.d/vsftpd


> # default: off
> # description: The vsftpd FTP server.
> service ftp
> {
> 	disable		= no
> 	socket_type	= stream
> 	protocol	= tcp
> 	wait		= no  
> 	user		= root
> 	nice		= 10
> 	rlimit_as	= 16M
> 	server		= /usr/sbin/vsftpd
> #	server_args	= 
> 	only_from	= 192.168.0.0
> }
> 
Не могу понять, почему не работает... помогите...

Заранее благодарен...




Подробная информация о списке рассылки community