FTP 'ls' command hangs...
Wed, 23 Jan 2002 11:21:34 +0545 (NPT)
HI, I think you need to go for PASSIVE ftp and not ACTIVE as I suppose
ip_conntrack_ftp handles PASSIVE conns and not ACTIVE. You may want to
load ip_conntrack_irc instead that handles ACTIVE conns.
On Tue, 22 Jan 2002, Aldo S. Lagana wrote:
> I have just updated my kernel from 2.4.10 to 2.4.16 and am running
> iptables 1.2.2
> Active FTP used to work fine, but now I login (active ftp) and 'ls' &
> 'get' hang.
> I have allowed both ports 20 & 21 through the FORWARD chains, and I have
> a ESTABLISHED,RELATED rule to ACCEPT confirmed connections.
> I have loaded the ip_nat_ftp module and ip_conntrack_ftp
> Sorry for all the 'I's; but am wondering if I need to update iptables
> since updating the kernel - for this to work - anybody know?