[LARTC] DNAT rule for vsftp (PASSIVE FTP)

Indunil Jayasooriya indunil75 at gmail.com
Fri Oct 5 09:16:56 CEST 2007


On 10/5/07, Grant Taylor <gtaylor at riverviewtech.net> wrote:
>
> On 10/5/2007 12:51 AM, Indunil Jayasooriya wrote:
> > I want to run vsftp behind a firewall.(i.e DMZ zone) . It is runnig as
> > passive ftp.
>
> Ok...
>
> > Then, How can I write DNAT rules.
>
> You don't want to write rules for each possible combination.
>
> > YOUR comments.
>
> Use the FTP helper module as it is meant to take care of this for you.
>
> What is FTP helper module?


is it ip_nat_ftp ?

ANYWAY,  I have  loaded below  2 modules.

/sbin/modprobe -a ip_conntrack_ftp ip_nat_ftp

YOUR COMMENTS.


Grant. . . .
> _______________________________________________
> LARTC mailing list
> LARTC at mailman.ds9a.nl
> http://mailman.ds9a.nl/cgi-bin/mailman/listinfo/lartc
>



-- 
Thank you
Indunil Jayasooriya
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ds9a.nl/pipermail/lartc/attachments/20071005/b488fce8/attachment.html


More information about the LARTC mailing list