On Monday 09 August 2004 9:27 pm, Patrick Ahler wrote: > Does anyone know off hand which ports I need to open on my > gateway/firewall for ftp over ssl (explicit) besides port 990??? I don't know, but I know how you can find out. Add a LOG rule at the end of your FORWARD chain (just before the packets get DROPped), and see what's trying to get between client & server. That'll tell you what you need to add as an ACCEPT rule. Regards, Antony. -- Wanted: telepath. You know where to apply. Please reply to the list; please don't CC me.