[j-nsp] How to rate limit ftp traffic

Joe Lin jlin at doradosoftware.com
Fri Jun 13 15:43:55 EDT 2003


Do destination-port of ftp



-----Original Message-----
From: juniper-nsp-bounces at puck.nether.net
[mailto:juniper-nsp-bounces at puck.nether.net] On Behalf Of
hhadiwinoto at hotpop.com
Sent: Friday, June 13, 2003 2:01 PM
To: juniper-nsp at puck.nether.net
Subject: [j-nsp] How to rate limit ftp traffic

Hi all,

i have simple question related with rate limit ftp traffic. i want to
limit
all the ftp traffic out of my networks..

i have configured rate-limit as below,

from {
    protocol tcp;
    source-port [ ftp-data ftp ];
}
then {
    policer ftp-500k;
    count policer-ftp;

but it didnt work since most the ftp servers use passive mode which use
port greater than 1024. any helps will be appreciated.


regards
hendro

--------------------------------------------------------------------
mail2web - Check your email from the web at
http://mail2web.com/ .



_______________________________________________
juniper-nsp mailing list juniper-nsp at puck.nether.net
http://puck.nether.net/mailman/listinfo/juniper-nsp



More information about the juniper-nsp mailing list