[Author Prev][Author Next][Thread Prev][Thread Next][Author Index][Thread Index]
Re: How does a ftp-server log real ip-address of client machine?
- To: or-talk@xxxxxxxxxxxxx
- Subject: Re: How does a ftp-server log real ip-address of client machine?
- From: Robert Ransom <rransom.8774@xxxxxxxxx>
- Date: Wed, 29 Dec 2010 16:35:40 -0800
- Delivered-to: archiver@xxxxxxxx
- Delivered-to: or-talk-outgoing@xxxxxxxx
- Delivered-to: or-talk@xxxxxxxx
- Delivery-date: Wed, 29 Dec 2010 19:36:24 -0500
- Dkim-signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:date:from:to:subject :message-id:in-reply-to:references:x-mailer:mime-version :content-type; bh=UkZ+ht8ZJbUlX0JYYhkPetCk8yem0URVudRD4NVAJFw=; b=xaQq1Argb5qblehcPGYUelGb+xOLRtOZktx9hf9ilVwfCC7TDpcXHWJJFQ6fMFtqM4 m0uGwtppPb0rGJ5dUUr8Zuix8qaYIhTllGiYsmZ43iV6f28Ftxk1r7hbu4vdivyB/KGy +XwGhoFtfbLGLmdTOeHU7MgcmB1FDdA+gApkQ=
- Domainkey-signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=date:from:to:subject:message-id:in-reply-to:references:x-mailer :mime-version:content-type; b=BIw+vpKa/8jhFyMHX5VHN8F3n3WiFV/WlrS7fIsp8l+gS1HSKtpoezeWwGlZ3opzfp k+QHex4A8hWVjNbmGnv8LUheDMkihfaeM20U8UgvZcH8q7dcrUAMN9AsNJf3UaQCX5Au RS1MLgm1PeWXJEVfkG80b0zNymtcz5M++Nkrk=
- In-reply-to: <4D1BA444.1080600@xxxxxxxxxxxxxxxxxx>
- References: <4D1BA444.1080600@xxxxxxxxxxxxxxxxxx>
- Reply-to: or-talk@xxxxxxxxxxxxx
- Sender: owner-or-talk@xxxxxxxxxxxxx
On Wed, 29 Dec 2010 21:12:36 +0000
Orionjur Tor-admin <tor-admin@xxxxxxxxxxxxxxxxxx> wrote:
> I usually connect to my servers through the Tor.
> When I connecting with them through ssh or sffp I don't find any serious
> in logs of my server except ip--addresses or names of apropriate
> exit-nodes of the Tor.
> But when I connect with them through ftp immediate (without ssh) I can
> see real ip-addresses of my client's machine such the next:
> proftpd[32816] someuser (anonymizer2.torservers.net[174.36.199.200]):
> Refused PORT 192,168,1,5,203,191 (address mismatch)
> As I understand if my machine would not be behind NAT and have 'white'
> ip-address my anonimity would be compromised.
> How does a ftp-server log real ip-address of client machine? And how I
> can avoid it?
Your FTP client sent your IP address to the server.
To prevent your FTP client from sending your IP address to the server,
you need to use an FTP client that supports 'passive mode', at the very
least. Setting 'passive mode' may or may not be enough; if you want to
make sure the FTP client you want to use won't leak information, audit
its source code.
Robert Ransom
Attachment:
signature.asc
Description: PGP signature