Apache/2.4.7 (Ubuntu) Linux sman1baleendah 3.13.0-24-generic #46-Ubuntu SMP Thu Apr 10 19:11:08 UTC 2014 x86_64 uid=33(www-data) gid=33(www-data) groups=33(www-data) safemode : OFF MySQL: ON | Perl: ON | cURL: OFF | WGet: ON > / usr / share / doc / iptables / html / | server ip : 172.67.156.115 your ip : 108.162.241.113 H O M E |
Filename | /usr/share/doc/iptables/html/NAT-HOWTO-7.html |
Size | 1.22 kb |
Permission | rw-r--r-- |
Owner | root : root |
Create time | 27-Apr-2025 09:55 |
Last modified | 09-Jan-2014 06:31 |
Last accessed | 07-Jul-2025 07:30 |
Actions | edit | rename | delete | download (gzip) |
View | text | code | image |
<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2 Final//EN">
<HTML>
<HEAD>
<META NAME="GENERATOR" CONTENT="LinuxDoc-Tools 0.9.69">
<TITLE>Linux 2.4 NAT HOWTO: Special Protocols</TITLE>
<LINK HREF="NAT-HOWTO-8.html" REL=next>
<LINK HREF="NAT-HOWTO-6.html" REL=previous>
<LINK HREF="NAT-HOWTO.html#toc7" REL=contents>
</HEAD>
<BODY>
<A HREF="NAT-HOWTO-8.html">Next</A>
<A HREF="NAT-HOWTO-6.html">Previous</A>
<A HREF="NAT-HOWTO.html#toc7">Contents</A>
<HR>
<H2><A NAME="s7">7.</A> <A HREF="NAT-HOWTO.html#toc7">Special Protocols</A></H2>
<P>Some protocols do not like being NAT'ed. For each of these
protocols, two extensions must be written; one for the connection
tracking of the protocol, and one for the actual NAT.</P>
<P>Inside the netfilter distribution, there are currently modules for
ftp: ip_conntrack_ftp.o and ip_nat_ftp.o. If you insmod these into
your kernel (or you compile them in permanently), then doing any kind
of NAT on ftp connections should work. If you don't, then you can
only use passive ftp, and even that might not work reliably if you're
doing more than simple Source NAT.</P>
<HR>
<A HREF="NAT-HOWTO-8.html">Next</A>
<A HREF="NAT-HOWTO-6.html">Previous</A>
<A HREF="NAT-HOWTO.html#toc7">Contents</A>
</BODY>
</HTML>
<HTML>
<HEAD>
<META NAME="GENERATOR" CONTENT="LinuxDoc-Tools 0.9.69">
<TITLE>Linux 2.4 NAT HOWTO: Special Protocols</TITLE>
<LINK HREF="NAT-HOWTO-8.html" REL=next>
<LINK HREF="NAT-HOWTO-6.html" REL=previous>
<LINK HREF="NAT-HOWTO.html#toc7" REL=contents>
</HEAD>
<BODY>
<A HREF="NAT-HOWTO-8.html">Next</A>
<A HREF="NAT-HOWTO-6.html">Previous</A>
<A HREF="NAT-HOWTO.html#toc7">Contents</A>
<HR>
<H2><A NAME="s7">7.</A> <A HREF="NAT-HOWTO.html#toc7">Special Protocols</A></H2>
<P>Some protocols do not like being NAT'ed. For each of these
protocols, two extensions must be written; one for the connection
tracking of the protocol, and one for the actual NAT.</P>
<P>Inside the netfilter distribution, there are currently modules for
ftp: ip_conntrack_ftp.o and ip_nat_ftp.o. If you insmod these into
your kernel (or you compile them in permanently), then doing any kind
of NAT on ftp connections should work. If you don't, then you can
only use passive ftp, and even that might not work reliably if you're
doing more than simple Source NAT.</P>
<HR>
<A HREF="NAT-HOWTO-8.html">Next</A>
<A HREF="NAT-HOWTO-6.html">Previous</A>
<A HREF="NAT-HOWTO.html#toc7">Contents</A>
</BODY>
</HTML>