Re: Restrictive FTP egress using conntrack helper

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



On 02/11/17 17:14, Michael Weiser wrote:
I still get:

ftp> ls
227 Entering Passive Mode (134,76,12,6,119,247).
ftp: connect: Connection refused
ftp>

I think I read somewhere that the as of Kernel 4.7 the connection tracker no longer _automatically_ loads the helper module. So if you've built the connection tracking stuff as modules you'll need to manually modprobe the helpers you want to use.

If you're using the kernels and building as modules I'd double-check lsmod before you bang your head against anything solid. 8-)
--
To unsubscribe from this list: send the line "unsubscribe netfilter" in
the body of a message to majordomo@xxxxxxxxxxxxxxx
More majordomo info at  http://vger.kernel.org/majordomo-info.html



[Index of Archives]     [Linux Netfilter Development]     [Linux Kernel Networking Development]     [Netem]     [Berkeley Packet Filter]     [Linux Kernel Development]     [Advanced Routing & Traffice Control]     [Bugtraq]

  Powered by Linux