On Sat, Feb 22, 2003 at 10:20:11PM +0200, Roman Gavrilov wrote: > Hello, > > My question is about ftp and ftp data connections. > I know this subject has been heavily discussed but still ... > > I set up my firewall to allow connections to 21 and 20 ports. > I also allowed connections to high ports from outside from port 20. > and of course I enabled all established and related connections. Have you loaded 'ip_nat_ftp' and 'ip_conntrack_ftp' ? Regards, Willi -- the three great virtues of a programmer: laziness, impatience and hubris. Lary Wall