<?xml version="1.0" encoding="UTF-8"?>
<rdf:RDF xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns="http://purl.org/rss/1.0/" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:syn="http://purl.org/rss/1.0/modules/syndication/" xmlns:admin="http://webns.net/mvcb/">
  <channel rdf:about="http://blog.gmane.org/gmane.network.proftpd.user">
    <title>gmane.network.proftpd.user</title>
    <link>http://blog.gmane.org/gmane.network.proftpd.user</link>
    <description/>
    <syn:updatePeriod>hourly</syn:updatePeriod>
    <syn:updateFrequency>1</syn:updateFrequency>
    <syn:updateBase>1901-01-01T00:00+00:00</syn:updateBase>
    <items>
      <rdf:Seq>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9130"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9129"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9128"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9127"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9126"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9125"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9124"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9123"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9122"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9121"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9120"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9119"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9118"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9117"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9116"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9115"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9114"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9113"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9112"/>
        <rdf:li rdf:resource="http://permalink.gmane.org/gmane.network.proftpd.user/9111"/>
      </rdf:Seq>
    </items>
    <image rdf:resource="http://gmane.org/img/gmane-25t.png"/>
    <textinput rdf:resource=""/>
  </channel>
  <image rdf:about="http://gmane.org/img/gmane-25t.png">
    <title>Gmane</title>
    <url>http://gmane.org/img/gmane-25t.png</url>
    <link>http://gmane.org</link>
  </image>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9130">
    <title>Re: [Proftpd-user] proftpd-1.3.4a won't follow a symlink if it has a double slash as target</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9130</link>
    <description>&lt;pre&gt;On Thu, May 16, 2013 at 1:01 PM, Matus UHLAR - fantomas
&amp;lt;uhlar&amp;lt; at &amp;gt;fantomas.sk&amp;gt;wrote:


no mod_vroot - i do use ShowSymlinks

attached is complete proftpd.conf

it is an easy test to repeat
------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html&lt;/pre&gt;</description>
    <dc:creator>Dat Head</dc:creator>
    <dc:date>2013-05-16T18:35:58</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9129">
    <title>Re: [Proftpd-user] proftpd-1.3.4a won't follow a symlink if it has a double slash as target</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9129</link>
    <description>&lt;pre&gt;

It's a bug; it was fixed in proftpd-1.3.4c (and later).

Cheers,
TJ

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

   The Universe is change; life is opinion.

   -Marcus Aurelius

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>TJ Saunders</dc:creator>
    <dc:date>2013-05-16T18:30:15</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9128">
    <title>Re: [Proftpd-user] proftpd-1.3.4a won't follow a symlink if it has a double slash as target</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9128</link>
    <description>&lt;pre&gt;

On 16.05.13 12:22, Dat Head wrote:

do you use mod_vroot? I can't imagine how could this not work with standard
chroot ...
&lt;/pre&gt;</description>
    <dc:creator>Matus UHLAR - fantomas</dc:creator>
    <dc:date>2013-05-16T17:01:35</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9127">
    <title>Re: [Proftpd-user] proftpd-1.3.4a won't follow a symlink if it has a double slash as target</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9127</link>
    <description>&lt;pre&gt;On Thu, May 16, 2013 at 11:35 AM, Matus UHLAR - fantomas
&amp;lt;uhlar&amp;lt; at &amp;gt;fantomas.sk&amp;gt;wrote:



yes, and it works fine from outside ftp, as it should,
and if we fix the link to contain only one slash then
it works for proftp also (which shows it is something in the proftp code)
------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html&lt;/pre&gt;</description>
    <dc:creator>Dat Head</dc:creator>
    <dc:date>2013-05-16T16:22:44</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9126">
    <title>Re: [Proftpd-user] tls connection time out</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9126</link>
    <description>&lt;pre&gt;
Apparently firewall(/NAT) problem. Stateful firewalls with FTP support can
analyze FTP data stream and allow data connection that would otherwise be
denied.

With encrypted connection, this is impossible, unless the client turns off
encryption using CCC command, which is not supported/used by all TLS-aware
FTP clients.

You can try turning passive mode on/off, so the firewall would not complain.
With PORT mode, data connection is open from server, which often causes
troubles at the clients firewall side.
wth PASV (passive) mode, data connection is made from client to server, so
firewall on server can deny the connection.

With firewall on both sides, you need either explicitly allow ports on
server and tell the server to use these ports, or you _need_ client using
CCC command - otherwise you can't use TLS.

However, using firewalls at server side in such case is quite
conterproductive, especially when it denies clients from using TLS

&lt;/pre&gt;</description>
    <dc:creator>Matus UHLAR - fantomas</dc:creator>
    <dc:date>2013-05-16T15:56:01</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9125">
    <title>Re: [Proftpd-user] SFTP hung sessions and error "Server unexpectedly closed network connection" for only one user</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9125</link>
    <description>&lt;pre&gt;They have Core ftp version 2.2 build 1771


We have the following in our config file as well.

# General sftp client fixes from the mod_sftp forum
SFTPClientMatch ".*WS_FTP.*" channelWindowSize 1GB #WS_FTP initial window
size
SFTPClientMatch ".*ClientSftp" sftpProtocolVersion 3 #CuteFTPPro8
SFTPClientMatch ".*WinSCP.*" sftpProtocolVersion 3 #upload/download fix for
WinSCP
#
# SecureBlackbox (SSH-2.0-SecureBlackbox.7)
# http://www.eldos.com/sbb/download-release.php
SFTPClientMatch ".*SecureBlackbox.*" sftpProtocolVersion 3
#
# GoAnywhere (SSH-2.0-1.0)
# http://www.goanywheremft.com/products
SFTPClientMatch "1.0" sftpProtocolVersion 3 channelWindowSize 1GB
#
# JaSFtp (SSH-2.0-J2SSH_Maverick_1.2.10_Sterling Commerce)
# http://www.hiteksoftware.com/jasf/
SFTPClientMatch ".*J2SSH_Maverick.*" channelWindowSize 1GB
#
# Robo-FTP (SSH-2.0-WeOnlyDo)
# http://www.robo-ftp.com/
SFTPClientMatch ".*WeOnlyDo.*" sftpProtocolVersion 3 channelWindowSize 1GB
#
# Network Automation (SSH-2.0-EldoS.SSHBlackbox.3)
# http://www.networkautomation.com/
SFTPClientMatch ".*EldoS.SSHBlackbox.3.*" sftpProtocolVersion 3
channelWindowSize 1GB
#
# /n Software BizTalk SFTP Receive (SSH-2.0-IP*Works! SSH Client v8.0)
# http://www.nsoftware.com/products/bi...ters/sftp.aspx
SFTPClientMatch ".*IP.Works.*" channelWindowSize 1GB

SFTPClientMatch ".*OpenSSH_4.*" sftpProtocolVersion 1-3



On Thu, May 16, 2013 at 10:22 AM, Josh Ghiloni &amp;lt;ghiloni&amp;lt; at &amp;gt;gmail.com&amp;gt; wrote:

------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html&lt;/pre&gt;</description>
    <dc:creator>Ezsra McDonald</dc:creator>
    <dc:date>2013-05-16T15:30:30</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9124">
    <title>Re: [Proftpd-user] proftpd-1.3.4a won't follow a symlink if it has a double slash as target</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9124</link>
    <description>&lt;pre&gt;
does dir1 exist?

&lt;/pre&gt;</description>
    <dc:creator>Matus UHLAR - fantomas</dc:creator>
    <dc:date>2013-05-16T15:35:11</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9123">
    <title>Re: [Proftpd-user] SFTP hung sessions and error "Server unexpectedly closed network connection" for only one user</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9123</link>
    <description>&lt;pre&gt;
Could they be using an older client that doesn't handle the default SFTP
channel window of 4GB? we had that with a few of our clients and had to
drop the default to 1gb to ensure that all our clients can connect
successfully.
------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html&lt;/pre&gt;</description>
    <dc:creator>Josh Ghiloni</dc:creator>
    <dc:date>2013-05-16T15:22:45</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9122">
    <title>[Proftpd-user] SFTP hung sessions and error "Server unexpectedly closed network connection" for only one user</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9122</link>
    <description>&lt;pre&gt;Greetings,

We have 100's of Core_FTP clients that access our FTP server on SFTP port
2222. For some reason one of them is consistently leaving sessions open and
the server is not killing them.

Customer is reporting the following message:
"Server unexpectedly closed network connection"

This is how the user sessions look from a ftpwho query:

ftphost:~$ ftpwho
standalone FTP daemon [29724], up for 4 days, 10 hrs 26 min
17010 theUser  [ 50h2m] (n/a) READDIR /
14165 theUser  [25h55m] (n/a) READDIR /
23548 theUser  [22h17m] (n/a) LIST
23186 theUser  [22h25m] (n/a) READDIR /
24414 theUser  [21h57m] (n/a) READDIR /
23224 theUser  [22h24m] (n/a) LIST
23251 theUser  [22h23m] (n/a) LIST
23444 theUser  [22h19m] (n/a) LIST

We have to restart the server for the user to regain access.

Our config has the following timeout settings:

TimeoutIdle             800
TimeoutLogin            300
TimeoutNoTransfer       800


RPM: proftpd-1.3.4b-1

Any suggestions?

--Ezsra
------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html&lt;/pre&gt;</description>
    <dc:creator>Ezsra McDonald</dc:creator>
    <dc:date>2013-05-16T15:17:10</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9121">
    <title>[Proftpd-user] tls connection time out</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9121</link>
    <description>&lt;pre&gt;Hi all! Again here :-)

On a debian server I've proftpd-basic 1.3.3a.

Runs perfectly if I use it without TLS.

When I enable TLS, my clients goes to time out:

Command:MLSD
Error:Connection timed out
Error:Failed to retrieve directory listing

Half or more aftertoon to search with google but I didn't find any
solution :-(((

thanks for the help!

tail -f /var/log/proftpd/tls.log

May 15 17:58:38 mod_tls/2.4.2[20385]: using default OpenSSL verification
locations (see $SSL_CERT_DIR environment variable)
May 15 17:58:38 mod_tls/2.4.2[20385]: TLS/TLS-C requested, starting TLS
handshake
May 15 17:58:38 mod_tls/2.4.2[20385]: TLSv1/SSLv3 connection accepted,
using cipher DHE-RSA-AES128-SHA (128 bits)
May 15 17:58:38 mod_tls/2.4.2[20385]: Protection set to Private

My config:

openssl req -new -x509 -days 365 -nodes -out
/etc/proftpd/ssl/proftpd.cert.pem -keyout /etc/proftpd/ssl/proftpd.key.pem

tls.conf

&amp;lt;IfModule mod_tls.c&amp;gt;

TLSEngine                               on
TLSLog                                  /var/log/proftpd/tls.log
TLSProtocol                             SSLv23
TLSOptions                   NoCertRequest
TLSRSACertificateFile                   /etc/proftpd/ssl/proftpd.cert.pem
TLSRSACertificateKeyFile                /etc/proftpd/ssl/proftpd.key.pem
TLSVerifyClient                         off
TLSRequired                             on

&amp;lt;/IfModule&amp;gt;

and proftpd.conf

# Includes DSO modules
Include /etc/proftpd/modules.conf

# Set off to disable IPv6 support which is annoying on IPv4 only boxes.
UseIPv6on
# If set on you can experience a longer connection delay in many cases.
IdentLookupsoff

ServerName"fuckaround.org"
ServerTypestandalone
DeferWelcomeoff

MultilineRFC2228on
DefaultServeron
ShowSymlinkson

TimeoutNoTransfer1200
TimeoutStalled1200
TimeoutIdle1600

DisplayLogin                    welcome.msg
DisplayChdir               .message true
ListOptions                "-l"

DenyFilter\*.*/

# Use this to jail all users in their homes
DefaultRoot~

# Users require a valid shell listed in /etc/shells to login.
# Use this directive to release that constrain.
# RequireValidShelloff

# Port 21 is the standard FTP port.
Port21

# In some cases you have to specify passive ports range to by-pass
# firewall limitations. Ephemeral ports can be used for that, but
# feel free to use a more narrow range.
 PassivePorts                  49152 65534

# If your host was NATted, this option is useful in order to
# allow passive tranfers to work. You have to use your public
# address and opening the passive ports used on your firewall as well.
# MasqueradeAddress1.2.3.4

# This is useful for masquerading address with dynamic IPs:
# refresh any configured MasqueradeAddress directives every 8 hours
&amp;lt;IfModule mod_dynmasq.c&amp;gt;
# DynMasqRefresh 28800
&amp;lt;/IfModule&amp;gt;

# To prevent DoS attacks, set the maximum number of child processes
# to 30.  If you need to allow more than 30 concurrent connections
# at once, simply increase this value.  Note that this ONLY works
# in standalone mode, in inetd mode you should use an inetd server
# that allows you to limit maximum number of processes per service
# (such as xinetd)
MaxInstances30

# Set the user and group that the server normally runs at.
Userproftpd
Groupnogroup

# Umask 022 is a good standard umask to prevent new files and dirs
# (second parm) from being group and world writable.
Umask022  022
# Normally, we want files to be overwriteable.
AllowOverwriteon

# Uncomment this if you are using NIS or LDAP via NSS to retrieve passwords:
# PersistentPasswdoff

# This is required to use both PAM-based authentication and local passwords
# AuthOrdermod_auth_pam.c* mod_auth_unix.c

# Be warned: use of this directive impacts CPU average load!
# Uncomment this if you like to see progress and transfer rate with ftpwho
# in downloads. That is not needed for uploads rates.
#
# UseSendFileoff

TransferLog /var/log/proftpd/xferlog
SystemLog   /var/log/proftpd/proftpd.log

&amp;lt;IfModule mod_quotatab.c&amp;gt;
QuotaEngine off
&amp;lt;/IfModule&amp;gt;

&amp;lt;IfModule mod_ratio.c&amp;gt;
Ratios off
&amp;lt;/IfModule&amp;gt;


# Delay engine reduces impact of the so-called Timing Attack described in
# http://security.lss.hr/index.php?page=details&amp;amp;ID=LSS-2004-10-02
# It is on by default.
&amp;lt;IfModule mod_delay.c&amp;gt;
DelayEngine on
&amp;lt;/IfModule&amp;gt;

&amp;lt;IfModule mod_ctrls.c&amp;gt;
ControlsEngine        off
ControlsMaxClients    2
ControlsLog           /var/log/proftpd/controls.log
ControlsInterval      5
ControlsSocket        /var/run/proftpd/proftpd.sock
&amp;lt;/IfModule&amp;gt;

&amp;lt;IfModule mod_ctrls_admin.c&amp;gt;
AdminControlsEngine off
&amp;lt;/IfModule&amp;gt;

#
# Alternative authentication frameworks
#
#Include /etc/proftpd/ldap.conf
#Include /etc/proftpd/sql.conf

#
# This is used for FTPS connections
#
Include /etc/proftpd/tls.conf

# A basic anonymous configuration, no upload directories.

# &amp;lt;Anonymous ~ftp&amp;gt;
#   Userftp
#   Groupnogroup
#   # We want clients to be able to login with "anonymous" as well as "ftp"
#   UserAliasanonymous ftp
#   # Cosmetic changes, all files belongs to ftp user
#   DirFakeUseron ftp
#   DirFakeGroup on ftp
#
#   RequireValidShelloff
#
#   # Limit the maximum number of anonymous logins
#   MaxClients10
#
#   # We want 'welcome.msg' displayed at login, and '.message' displayed
#   # in each newly chdired directory.
#   DisplayLoginwelcome.msg
#   DisplayChdir.message
#
#   # Limit WRITE everywhere in the anonymous chroot
#   &amp;lt;Directory *&amp;gt;
#     &amp;lt;Limit WRITE&amp;gt;
#       DenyAll
#     &amp;lt;/Limit&amp;gt;
#   &amp;lt;/Directory&amp;gt;
#
#   # Uncomment this if you're brave.
#   # &amp;lt;Directory incoming&amp;gt;
#   #   # Umask 022 is a good standard umask to prevent new files and dirs
#   #   # (second parm) from being group and world writable.
#   #   Umask022  022
#   #            &amp;lt;Limit READ WRITE&amp;gt;
#   #            DenyAll
#   #            &amp;lt;/Limit&amp;gt;
#   #            &amp;lt;Limit STOR&amp;gt;
#   #            AllowAll
#   #            &amp;lt;/Limit&amp;gt;
#   # &amp;lt;/Directory&amp;gt;
#
# &amp;lt;/Anonymous&amp;gt;


------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Pol Hallen</dc:creator>
    <dc:date>2013-05-15T16:08:26</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9120">
    <title>[Proftpd-user] proftpd-1.3.4a won't follow a symlink if it has adouble slash as target</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9120</link>
    <description>&lt;pre&gt;if we have a symlink such as this (does not point outside the chroot),
note has double slash:

foo -&amp;gt; dir1//bar

proftp 1.3.4a will not deliver the file - says "file not found"

it is legal to have double slash in linux, and although i admit
it isn't great to have, it came about by accident and stopped a lot
of files from being able to be retrieved until we fixed all the links
(and no errors in log, just on ftp client side)

is this a buglet or a security feature ;-)
------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html&lt;/pre&gt;</description>
    <dc:creator>Dat Head</dc:creator>
    <dc:date>2013-05-15T16:00:56</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9119">
    <title>Re: [Proftpd-user] chroot and symlinks</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9119</link>
    <description>&lt;pre&gt;
Yep :-O

solved... thanks boy!

:-)

Pol


------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Pol Hallen</dc:creator>
    <dc:date>2013-05-15T16:00:48</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9118">
    <title>Re: [Proftpd-user] chroot and symlinks</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9118</link>
    <description>&lt;pre&gt;
You didn't read very closely then :)

You need to specifically check out this section: Filesystem Tricks

Right above that you see:
"If your symlink does need to go above the DefaultRoot directory, then
you need to use one of the other tricks described below."

Hopefully that section will help you out.

------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Josh Ghiloni</dc:creator>
    <dc:date>2013-05-15T13:53:23</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9117">
    <title>[Proftpd-user] chroot and symlinks</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9117</link>
    <description>&lt;pre&gt;Hi all :-)

I installed proftpd 1.3.4a (debian 7).

I read this page: http://www.proftpd.org/docs/howto/Chroot.html but I
can't see symlinks :-(((

/home/user1

mkdir /home/user1/www

ln -s /var/www/user1 www

"www" is a directory: ls -l

drwxr-xr-x 2 user1 user1 4096 May 15 09:16 www

and ls -l www is:

lrwxrwxrwx 1 user1 user1 24 May 15 09:16 www.example.com -&amp;gt;
/var/www/www.example.com

When I try to connect, after login:

ncftp / &amp;gt; ls www

www is empty :-///

Thanks for the help!

Pol

cat /etc/proftpd/proftpd.conf

Include /etc/proftpd/modules.conf

UseIPv6on
IdentLookupsoff
ServerName"Debian"
ServerTypestandalone
DeferWelcomeoff
MultilineRFC2228on
DefaultServeron
ShowSymlinkson
TimeoutNoTransfer600
TimeoutStalled600
TimeoutIdle1200
DisplayLogin                    welcome.msg
DisplayChdir               .message true
ListOptions                "-l"
DenyFilter\*.*/
DefaultRoot~
Port21
&amp;lt;IfModule mod_dynmasq.c&amp;gt;
# DynMasqRefresh 28800
&amp;lt;/IfModule&amp;gt;
MaxInstances30
Userproftpd
Groupnogroup
Umask022  022
AllowOverwriteon
TransferLog /var/log/proftpd/xferlog
SystemLog   /var/log/proftpd/proftpd.log
&amp;lt;IfModule mod_quotatab.c&amp;gt;
QuotaEngine off
&amp;lt;/IfModule&amp;gt;
&amp;lt;IfModule mod_ratio.c&amp;gt;
Ratios off
&amp;lt;/IfModule&amp;gt;
&amp;lt;IfModule mod_delay.c&amp;gt;
DelayEngine on
&amp;lt;/IfModule&amp;gt;
&amp;lt;IfModule mod_ctrls.c&amp;gt;
ControlsEngine        off
ControlsMaxClients    2
ControlsLog           /var/log/proftpd/controls.log
ControlsInterval      5
ControlsSocket        /var/run/proftpd/proftpd.sock
&amp;lt;/IfModule&amp;gt;
&amp;lt;IfModule mod_ctrls_admin.c&amp;gt;
AdminControlsEngine off
&amp;lt;/IfModule&amp;gt;
Include /etc/proftpd/conf.d/


------------------------------------------------------------------------------
AlienVault Unified Security Management (USM) platform delivers complete
security visibility with the essential security capabilities. Easily and
efficiently configure, manage, and operate all of your security controls
from a single console and one unified framework. Download a free trial.
http://p.sf.net/sfu/alienvault_d2d
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>proftpdml&lt; at &gt;fuckaround.org</dc:creator>
    <dc:date>2013-05-15T13:24:19</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9116">
    <title>Re: [Proftpd-user] Segfault using mod_ldap (fwd)</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9116</link>
    <description>&lt;pre&gt;The post-script to all of this is that it was FIPS -- I recompiled
against non-openssl fips in our non-prod environment and everything
was hunky dory. FIPS will just have to be a bridge we cross at a later
date.

On Wed, May 8, 2013 at 6:59 PM, Josh Ghiloni &amp;lt;ghiloni&amp;lt; at &amp;gt;gmail.com&amp;gt; wrote:

------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and 
their applications. This 200-page book is written by three acclaimed 
leaders in the field. The early access version is available now. 
Download your free book today! http://p.sf.net/sfu/neotech_d2d_may
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Josh Ghiloni</dc:creator>
    <dc:date>2013-05-09T20:37:04</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9115">
    <title>Re: [Proftpd-user] Segfault using mod_ldap (fwd)</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9115</link>
    <description>&lt;pre&gt;god, gmail is the WORST. i have an idea i'm going to exercise, TJ,
based on an idea we'd had a few months ago when mod_sftp was
segfaulting, and it turned out mod_sftp was compiled against FIPS
openssl, but was running against non-FIPS openssl. i suspect something
similar is happening now.

------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and 
their applications. This 200-page book is written by three acclaimed 
leaders in the field. The early access version is available now. 
Download your free book today! http://p.sf.net/sfu/neotech_d2d_may
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Josh Ghiloni</dc:creator>
    <dc:date>2013-05-09T00:59:53</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9114">
    <title>[Proftpd-user] unsubscribe</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9114</link>
    <description>&lt;pre&gt;
------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and 
their applications. This 200-page book is written by three acclaimed 
leaders in the field. The early access version is available now. 
Download your free book today! http://p.sf.net/sfu/neotech_d2d_may_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html&lt;/pre&gt;</description>
    <dc:creator>Raman, Pattabhi</dc:creator>
    <dc:date>2013-05-08T23:52:41</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9113">
    <title>Re: [Proftpd-user] Segfault using mod_ldap</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9113</link>
    <description>&lt;pre&gt;ok, looks like it was created with MD5 ... since we have to use Oracle
Wallet to create the certificate, i'll look into how to create one
with sha-1. thanks for the tip -- i'll give 'er a shot.

On Wed, May 8, 2013 at 3:56 PM, Josh Ghiloni &amp;lt;ghiloni&amp;lt; at &amp;gt;gmail.com&amp;gt; wrote:

------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and 
their applications. This 200-page book is written by three acclaimed 
leaders in the field. The early access version is available now. 
Download your free book today! http://p.sf.net/sfu/neotech_d2d_may
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Josh Ghiloni</dc:creator>
    <dc:date>2013-05-08T22:00:47</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9112">
    <title>Re: [Proftpd-user] Segfault using mod_ldap</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9112</link>
    <description>&lt;pre&gt;


You might use something like:

  $ openssl x509 -noout -text &amp;lt; /path/to/cert | grep Signature

For example, running this on a cert I had lying around showed:

  $ openssl x509 -noout -text &amp;lt; ~/cert-tool/ocsp-ca.pem | grep Signature
        Signature Algorithm: sha1WithRSAEncryption
    Signature Algorithm: sha1WithRSAEncryption

Cheers,
TJ

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

   Music, the greatest good that mortals know,
    And all of heaven we have below.

   -Joseph Addison

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and 
their applications. This 200-page book is written by three acclaimed 
leaders in the field. The early access version is available now. 
Download your free book today! http://p.sf.net/sfu/neotech_d2d_may
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>TJ Saunders</dc:creator>
    <dc:date>2013-05-08T21:57:43</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9111">
    <title>Re: [Proftpd-user] Segfault using mod_ldap</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9111</link>
    <description>&lt;pre&gt;that was a monumentally dumb question, given the existence of google.
i'm sorry i even asked it.

On Wed, May 8, 2013 at 3:52 PM, Josh Ghiloni &amp;lt;ghiloni&amp;lt; at &amp;gt;gmail.com&amp;gt; wrote:

------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and 
their applications. This 200-page book is written by three acclaimed 
leaders in the field. The early access version is available now. 
Download your free book today! http://p.sf.net/sfu/neotech_d2d_may
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Josh Ghiloni</dc:creator>
    <dc:date>2013-05-08T21:56:30</dc:date>
  </item>
  <item rdf:about="http://permalink.gmane.org/gmane.network.proftpd.user/9110">
    <title>Re: [Proftpd-user] Segfault using mod_ldap</title>
    <link>http://permalink.gmane.org/gmane.network.proftpd.user/9110</link>
    <description>&lt;pre&gt;You might be on to something with the MD5 vs SHA -- how can I
determine the digest the cert uses?

On Wed, May 8, 2013 at 3:46 PM, TJ Saunders &amp;lt;tj&amp;lt; at &amp;gt;castaglia.org&amp;gt; wrote:

------------------------------------------------------------------------------
Learn Graph Databases - Download FREE O'Reilly Book
"Graph Databases" is the definitive new guide to graph databases and 
their applications. This 200-page book is written by three acclaimed 
leaders in the field. The early access version is available now. 
Download your free book today! http://p.sf.net/sfu/neotech_d2d_may
_______________________________________________
ProFTPD Users List   &amp;lt;proftpd-users&amp;lt; at &amp;gt;proftpd.org&amp;gt;
Unsubscribe problems?
http://www.proftpd.org/list-unsub.html

&lt;/pre&gt;</description>
    <dc:creator>Josh Ghiloni</dc:creator>
    <dc:date>2013-05-08T21:52:42</dc:date>
  </item>
  <textinput rdf:about="http://search.gmane.org/?group=$group=gmane.network.proftpd.user">
    <title>Search Engine</title>
    <description>Search the mailing list at Gmane</description>
    <name>query</name>
    <link>http://search.gmane.org/?group=$group=gmane.network.proftpd.user</link>
  </textinput>
</rdf:RDF>
