IPTables and passive FTP

Discussion in 'Installation/Configuration' started by Ryanmt, Apr 14, 2008.

  1. Ryanmt

    Ryanmt New Member

    ahh thats fine then.. i didnt think anybody used anon ftp these days unless they wanted a server full of warez!

    Thanks for the help, thats my last niggle sorted out now. Very happy :)
  2. hanswid

    hanswid New Member

    similiar problem

    i hv the similar problem with proftp in opensuse 10.3. Everytime turn SuSE firewall on, proftp would stuck with 229 Entering Extended Passive Mode (|||54790|)... i hate it!

    so i just follow the solution in this thread:
    1. edit /etc/bastille-firewall.cfg, add the port 50000:60000
    2. edit /etc/proftpd.conf: comment out "Include /etc/proftpd_ispconfig.conf" and added "PassivePorts 50000 60000"

    Restart proftpd and suse firewall...
    But still won't work!

    Any other idea what i can do to solve this thing out? thx for any help.
  3. Ryanmt

    Ryanmt New Member

    Thats what fixed it for me. Thats a massive port range to have open btw. I prefer them to be alot smaller.
  4. jnsc

    jnsc rotaredoM Moderator

    If you can, use ip_conntrack_ftp which is intended for this purpose.
  5. Ryanmt

    Ryanmt New Member

    i went down that road and just couldnt get it working.
  6. jnsc

    jnsc rotaredoM Moderator

    That's the problem of VPS, it's one of the reasons that made me change to a real physical server.

