On Thu, 6 Jun 2002, Erik Pagel wrote:

> Hi Tom,
> 
> > Some FTP sites use auth which can cause connection timeouts with that
> > ruleset. For safety, I recommend adding
> >
> > iptables -A INPUT -p tcp --dport 113 -j REJECT
> 
> Possible but I traced the connection with tcpdump and didn't see any 
> connection to port 113.
> 

My point was that if you use FTP long enough, you will see such connection 
requests from certain servers. Best to have the rule in place ahead of 
time than to wonder why you can't connect to ftp.anachronisms.com.

-Tom
-- 
Tom Eastep    \ Shorewall - iptables made easy
AIM: tmeastep  \ http://www.shorewall.net
ICQ: #60745924  \ [EMAIL PROTECTED]


Reply via email to