On Thu, Mar 21, 2002 at 05:26:23PM -0800, Mike Egglestone wrote: > Is there a new way to fix this with iptables? > and what if the ftp server is servicing on a port other than > the standard 21?
You have to give the FTP contrl port to ip_conntrack_ftp and/or ip_nat_ftp: /sbin/modinfo ip_conntrack_ftp filename: /lib/modules/2.4.17-xfs/kernel/net/ipv4/netfilter/ip_conntrack_ftp.o description: <none> author: <none> license: "GPL" parm: ports int array (min = 1, max = 8) parm: loose int [EMAIL PROTECTED]:~> /sbin/modinfo ip_nat_ftp filename: /lib/modules/2.4.17-xfs/kernel/net/ipv4/netfilter/ip_nat_ftp.o description: <none> author: <none> license: "GPL" parm: ports int array (min = 1, max = 8) Greetings Bernd -- (OO) -- [EMAIL PROTECTED] -- ( .. ) [EMAIL PROTECTED],linux.de,debian.org} http://home.pages.de/~eckes/ o--o *plush* 2048/93600EFD [EMAIL PROTECTED] +497257930613 BE5-RIPE (O____O) When cryptography is outlawed, bayl bhgynjf jvyy unir cevinpl!

