Re: DNAT rule for vsftp (PASSIVE FTP)

Linux Advanced Routing and Traffic Control

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 





On 10/5/07, Grant Taylor <gtaylor@xxxxxxxxxxxxxxxxx> wrote:
On 10/5/2007 12:51 AM, Indunil Jayasooriya wrote:
> I want to run vsftp behind a firewall.(i.e DMZ zone) . It is runnig as
> passive ftp.

Ok...

> Then, How can I write DNAT rules.

You don't want to write rules for each possible combination.

> YOUR comments.

Use the FTP helper module as it is meant to take care of this for you.

What is FTP helper module?
 
is it ip_nat_ftp ?

ANYWAY,  I have  loaded below  2 modules.

/sbin/modprobe -a ip_conntrack_ftp ip_nat_ftp  

YOUR COMMENTS.


Grant. . . .
_______________________________________________
LARTC mailing list
LARTC@xxxxxxxxxxxxxxx
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc



--
Thank you
Indunil Jayasooriya
_______________________________________________
LARTC mailing list
LARTC@xxxxxxxxxxxxxxx
http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc

[Index of Archives]     [LARTC Home Page]     [Netfilter]     [Netfilter Development]     [Network Development]     [Bugtraq]     [GCC Help]     [Yosemite News]     [Linux Kernel]     [Fedora Users]
  Powered by Linux