proFTPd + tls authentificatin问题

时间:2014-11-02 11:48:24

标签: authentication ssl proftpd

无法进入我的ftp服务器。我使用proftpd 1.3.4a和mod_tls / 2.4.3。

我怀疑是 TLSOptions 指令

的错误
TLSEngine                        on
TLSLog                           /var/log/proftpd/tls.log
TLSProtocol                      SSLv23
TLSRSACertificateFile            /etc/proftpd/ssl/proftpd.cert.pem
TLSRSACertificateKeyFile         /etc/proftpd/ssl/proftpd.key.pem
TLSOptions                       NoCertRequest EnableDiags NoSessionReuseRequired
TLSVerifyClient                  off
TLSRequired                      on

tls.log 在我尝试连接时说了这个

Ноя 02 17:19:24 mod_tls/2.4.3[14333]: TLSOption EnableDiags enabled, setting diagnostics callback
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: using default OpenSSL verification locations (see $SSL_CERT_DIR environment variable)
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: SSL/TLS required but absent for authentication, denying USER command
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL sessions attempted: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL sessions established: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL sessions renegotiated: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL sessions resumed: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL sessions in cache: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL session cache hits: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL session cache misses: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL session cache timeouts: 0
Ноя 02 17:19:24 mod_tls/2.4.3[14333]: [stat]: SSL session cache size exceeded: 0

有什么想法吗?

1 个答案:

答案 0 :(得分:0)

TLSRequired                      on
....
SSL/TLS required but absent for authentication, denying USER command

我怀疑您没有使用SSL / TLS连接到服务器。但是,只有在通过SSL / TLS完成时才允许进行身份验证。检查ftp客户端中您实际使用SSL / TLS的设置。