User Tools

Site Tools


en:bpi-r2:network:iptables

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revision Previous revision
Next revision
Previous revision
en:bpi-r2:network:iptables [2018/04/18 11:10]
frank [Port-Forwardings]
en:bpi-r2:network:iptables [2019/01/09 18:04] (current)
Line 109: Line 109:
   target ​    prot opt source ​              ​destination ​           target ​    prot opt source ​              ​destination ​        
   DNAT       ​tcp ​ --  anywhere ​            ​anywhere ​            tcp dpt:522 to:​192.168.0.5:​22   DNAT       ​tcp ​ --  anywhere ​            ​anywhere ​            tcp dpt:522 to:​192.168.0.5:​22
 +
 +==== active-ftp ====
 +
 +to allow active-ftp from a client you need to load 2 modules and set 1 iptables-rule
 +
 +  modprobe ip_conntrack_ftp
 +  modprobe ip_nat_ftp ports=21
 +
 +
 +  ${ipt} -A INPUT -p tcp --sport 20 -m state --state ESTABLISHED,​RELATED -j ACCEPT
 +
  
 ===== IPv6 ===== ===== IPv6 =====
  
en/bpi-r2/network/iptables.txt · Last modified: 2019/01/09 18:04 (external edit)