On Thu, 17 May 2001, Luke McKee wrote:

>
> Can someone confirm that netfilter is doing this source ip check in the
> ftp_contrac module.

Yes, this is now checked by default with the 2.4.4 kernel.

> If this is so, could I request that there be a compile time define to not
> scrutinize the source ip address of incoming ftp data connections

If you need to allow these packets through (e.g. for load balancers etc),
use the new 'loose' parameter when loading the ip_nat_ftp module.


- James
-- 
James Morris
<[EMAIL PROTECTED]>



-- 
SLUG - Sydney Linux User Group Mailing List - http://slug.org.au/
More Info: http://lists.slug.org.au/listinfo/slug

Reply via email to