From: kpalmer (kip.palmer@xxxxxxxxxxx)
Date: Sun Jul 28 2002 - 04:38:29 GMT-3
Geeze, I feel weird answering my own questions.
I labbed out the FTP port scenario and these are the absolute results:
access-list 110 permit tcp host 172.24.24.10 gt 1023 10.1.1.0 0.0.0.255
eq 21
access-list 110 permit tcp host 172.24.24.10 gt 1023 10.1.1.0 0.0.0.255
eq 20
The source port is what is randomizes like anything else. These were
captured
during a data trasfer and that is the only time the port 20 session was
established.
Many FTP apps offer a knob on FTP passive mode ??
This archive was generated by hypermail 2.1.4 : Sat Sep 07 2002 - 19:36:47 GMT-3