Mouton i dont think you're gotten my point here.
Let me elaborate:
I wanna make sure users can list in any case. Blocking uploads & downloads using +fF flags is not a solution.
I want users to be able to transfer from "good ip / hosts " even though their control connection ip is outside my switch-enforced block. If a specified channel (device) could be specified with a port-rage excluded from the block and the standard balance-devices (data) specified for binary transfers my problems would be solved in seconds.
|