On 10/16/06, Joe Matusiewicz <joem@xxxxxxxx> wrote:
At 02:35 PM 10/16/2006, Shaun T. Erickson wrote: > >How do I configure iptables to allow active or passive ftp >connections, while poking the least amount of holes in the firewall? Loading these two modules got passive ftp to work for me: /sbin/modprobe ip_conntrack_ftp /sbin/modprobe ip_nat_ftp
Thanks. It turns out all I had to do was open up tcp port 21 and load the ip_conntrack_ftp module and then it just worked in both active and passive modes. -ste