On Wed, 29 May 2002, Ciprian Niculescu wrote:

> cautand altceva am gasit asta:
>
> If you for example want to allow Passive FTP, but not DCC send, you
> would load the ip_conntrack_ftp and ip_nat_ftp modules, but not the
> ip_conntrack_irc and ip_nat_irc modules and then do:
>
> /usr/local/sbin/iptables -A INPUT -p TCP -m state --state RELATED -j ACCEPT
>
>
> era cineva care facea o limitare la ftp, so cred ca asta te rezolva
>

Man omul avea nevoie de match/clasificare pe traficul de ftp (fie el
passive/active) care il fac clientii de ftp din reteaua interna.
Tu nu faci decat sa permiti active ftp daca ai modulele din kernel, ce
legatura are cu ce vroia omul ?

----------------------------
Mihai RUSU

Disclaimer: Any views or opinions presented within this e-mail are solely
those of the author and do not necessarily represent those of any company,
unless otherwise specifically stated.

---
Pentru dezabonare, trimiteti mail la 
[EMAIL PROTECTED] cu subiectul 'unsubscribe rlug'.
REGULI, arhive si alte informatii: http://www.lug.ro/mlist/


Raspunde prin e-mail lui