Flow: Unfortunately the server is not behind a router it's connected directly to the internet via the outlet in the wall that my ISP installed.
Yil: It might be reproducable, you could try and just add a new user, assign them to a group and have the
ident@xxx.xxx.*.* (where x are numbers) and then try and connect to the server "right away" after the account has been created, I tried this "locally" (I have 5 public IPs via my ISP and the outlet is shared with a home-use gigabit switch from netgear). Every user that I add is forced to have the
ident@xxx.xxx.*.* with only numbers no hostmasks or dynamic DNS names. I do use the Reject_Unknown_Ips but not the knock knock feature (even secure I think
)
The error.log has this entry when it didn't work:
Host '*@99.25.#.#' (#.#.#.se.net) did not match any of user 'new_user' allowed ident responses.
The client was set up to send the correct ident for that user and send it through port 113.
If you want I could send you my ioFTPD.ini file so you'll have the same config
/Ullman