Req #52178 [Com]: Enable CCC function on ftp_ssl_connect
Edit report at https://bugs.php.net/bug.php?id=52178&edit=1
ID: 52178
Comment by: xamres dot com at gmail dot com
Reported by: jeff dot wolkove at shps dot com
Summary: Enable CCC function on ftp_ssl_connect
Status: Open
Type: Feature/Change Request
Package: FTP related
Operating System: Linux
PHP Version: 5.3.2
Block user comment: N
Private report: N
New Comment:
Thanks for the patch. Enabled CCC functionality and it worked.
(https://xamres.com/).github.com
(https://xamres.com/how/cuims-login-uims-cuchd-in/).php.net
Previous Comments:
------------------------------------------------------------------------
[2010-06-25 00:15:34] jeff dot wolkove at shps dot com
Description:
------------
Encrypted connections do not work well with stateful firewalls. This is because firewalls intercept
PORT and PASV commands sent through the control connection in order to open a port for the data
connection. Since the control connection is encrypted, the firewall cannot see which port the server
or client have negotiated for the data connection.
The CCC command (clear control channel) is supposed to facilitate this. It is issued after the
connection is made, and user ID's and passwords have been exhanged over the encrypted
connection. After the CCC is issued the control channel is no longer encrypted, but the data
connection is.
Issuing a ftp_raw command with "CCC" as the argument is not sufficient. This tells the
remote server that the control channel has been cleared, however in fact, the PHP client is still
encrypting it.
Please enable CCC functionality. One way of doing this is to add an optional parameter on the
ftp_ssl_connect function that clears the control connection after the connection is negotiated with
the remote site.
------------------------------------------------------------------------
--
Edit this bug report at https://bugs.php.net/bug.php?id=52178&edit=1
Thread (2 messages)