> im having a problem with proftpd access when my firewall is running. Im
> using centos 4.3 with proftpd-1.2.10-10.2.el4.rf
>
> i haven't done any modification from my proftpd i just run the server.
my
> iptables ruleset is very simple i use stateful routing.
>
> iptables -A INPUT -i ! $WAN -j ACCEPT
> iptables -A INPUT -i $WAN -m state --state NEW -p tcp --dport 21 -j ACCEPT
I suspect your problem might be related to PASV ftp jumping up to a
higher power. You need to set an upper and lower port bound for PASV
ftp, or enable ftp connection tracking by loading the appropriate
iptables module.
--
During times of universal deceit, telling the truth becomes a revolutionary act.
George Orwell