ok, te opreste cineva sa schimbi -j ACCEPT in -j MARK ... 1 si apoi in tc filter ...... 1 fwmark
??? C Mihai RUSU wrote: > On Wed, 29 May 2002, Ciprian Niculescu wrote: > > >>cautand altceva am gasit asta: >> >>If you for example want to allow Passive FTP, but not DCC send, you >>would load the ip_conntrack_ftp and ip_nat_ftp modules, but not the >>ip_conntrack_irc and ip_nat_irc modules and then do: >> >>/usr/local/sbin/iptables -A INPUT -p TCP -m state --state RELATED -j ACCEPT >> >> >>era cineva care facea o limitare la ftp, so cred ca asta te rezolva >> >> > > Man omul avea nevoie de match/clasificare pe traficul de ftp (fie el > passive/active) care il fac clientii de ftp din reteaua interna. > Tu nu faci decat sa permiti active ftp daca ai modulele din kernel, ce > legatura are cu ce vroia omul ? > > ---------------------------- > Mihai RUSU > > Disclaimer: Any views or opinions presented within this e-mail are solely > those of the author and do not necessarily represent those of any company, > unless otherwise specifically stated. > > --- > Pentru dezabonare, trimiteti mail la > [EMAIL PROTECTED] cu subiectul 'unsubscribe rlug'. > REGULI, arhive si alte informatii: http://www.lug.ro/mlist/ > > --- Pentru dezabonare, trimiteti mail la [EMAIL PROTECTED] cu subiectul 'unsubscribe rlug'. REGULI, arhive si alte informatii: http://www.lug.ro/mlist/
