OpenVZ Forum


Home » General » Support » *SOLVED* Firewall rule don't allow ftp while port 21 is open
Re: Firewall rule don't allow ftp while port 21 is open [message #7191 is a reply to message #7186] Fri, 06 October 2006 10:08 Go to previous messageGo to previous message
Vasily Tarasov is currently offline  Vasily Tarasov
Messages: 1345
Registered: January 2006
Senior Member
No!
You should make the following changes:
          for OURIP in ${SERVER_IPS}; do
            for PORT in 20 21; do
             ${FWIN} -p tcp -d ${OURIP} --dport ${PORT} ${OK}
-            ${FWIN} -p tcp --sport  ${PORT} -d ${OURIP} --dport 1024: "!" --syn ${OK}
+            ${FWIN} -p tcp -d ${OURIP} --dport 1024: ${OK}
             ${FWIN} -p udp -d ${OURIP} --dport ${PORT} ${OK}
-            ${FWIN} -p udp --sport ${PORT} -d ${OURIP} --dport 1024: ${OK}
+            ${FWIN} -p udp -d ${OURIP} --dport 1024: ${OK}
            done
          done


This helps for me.
vass.
 
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Read Message
Previous Topic: *SOLVED* Broken VPS problem
Next Topic: Packet loss problem
Goto Forum:
  


Current Time: Tue Aug 13 11:21:39 GMT 2024

Total time taken to generate the page: 0.02744 seconds