On Wed, 29 May 2002, Ciprian Niculescu wrote: > cautand altceva am gasit asta: > > If you for example want to allow Passive FTP, but not DCC send, you > would load the ip_conntrack_ftp and ip_nat_ftp modules, but not the > ip_conntrack_irc and ip_nat_irc modules and then do: > > /usr/local/sbin/iptables -A INPUT -p TCP -m state --state RELATED -j ACCEPT > > > era cineva care facea o limitare la ftp, so cred ca asta te rezolva >
Man omul avea nevoie de match/clasificare pe traficul de ftp (fie el passive/active) care il fac clientii de ftp din reteaua interna. Tu nu faci decat sa permiti active ftp daca ai modulele din kernel, ce legatura are cu ce vroia omul ? ---------------------------- Mihai RUSU Disclaimer: Any views or opinions presented within this e-mail are solely those of the author and do not necessarily represent those of any company, unless otherwise specifically stated. --- Pentru dezabonare, trimiteti mail la [EMAIL PROTECTED] cu subiectul 'unsubscribe rlug'. REGULI, arhive si alte informatii: http://www.lug.ro/mlist/
