[linux] iptables firewall a FTP

Martin Mosny, PosTel, a.s. mmosny na postel.sk
Pondělí Březen 11 17:52:37 CET 2002


ahoj

to je to ACTIVE a PASSIVE mode pri FTP,
pozri sa ci mas moduly ip_conntrack_ftp, ip_conntrack a neviem, ci je to
aj pre tvoj pripad, podrobnejsie problem nepopisujes ale pozri si aj
ip_nat_ftp, ipt_MASQUERADE ak robis MASQ.

a pozri sa aj na iptables:

outbound connections back in
${IPTABLES} -t filter -A INETIN -m state --state ESTABLISHED -j ACCEPT

inbound connections
${IPTABLES} -t filter -A INETIN --dport 1024:65535 -m state --state RELATED -j ACCEPT

martin


On 11 Mar 2002, Milan Hromada wrote:

> Pripojit sa na server mozem to znamena
> meno
> heslo
> pwd
> Potadeto vsetko OK
> ale kde dam ls
>
> 500 Illegal PORT command.
> 425 Can't build data connection: Connection refused
> Neviete kde moze by chyba
>
> _______________________________________________
> http://lists.linux.sk/listinfo/linux
> http://search.lists.linux.sk
>


   IP network administrator
   PosTel, a.s. Kvacalova 53,82108 Bratislava 2
      Tel.: +421-2-50203166, Fax.: +421-2-50203198
   http://www.postel.sk, http://www.globalphone.sk
                  GlobalPhone, As long as you want

   NIC-NDL: MM5719-RIPE





Další informace o konferenci linux