Koozali.org: home of the SME Server

Obsolete Releases => SME Server 7.x => Topic started by: kscb on August 29, 2006, 11:01:43 AM

Title: iptables blocks some FTP traffic
Post by: kscb on August 29, 2006, 11:01:43 AM
I have a weird problem with iptables seemingly denying FTP traffic from some FTP clients if the transfer rate is too high...

I have an SME7 server acting as server and gateway between a LAN and the internet. I've done a lot of testing with two FTP clients on the LAN attempting to upload a file to an external FTP server:
Both are attempting to upload the same file to the same server with active FTP. As far as I can glean from iptraf, there are no differences in how client A and B connects to the server.

The iptables logfile shows that when I test with FTP client B, some traffic coming back from the FTP server is blocked by a denylog rule. The iptables setup is the SME7 out-of-the-box setup with no custom templates.

The wierd mystery is that if I set FTP client B to limit its transfer rate, it can upload sucessfully, without being cut off after 200 Kb... However, FTP client A can always upload sucessfully without limiting the transfer rate, so why FTP client B has trouble with iptables when its transfer rate isn't limited is completely beyond my comprehension.

Anyone have any ideas what the cause might be?
Title: Re: iptables blocks some FTP traffic
Post by: CharlieBrady on August 29, 2006, 02:59:25 PM
Quote from: "kscb"

Anyone have any ideas what the cause might be?


If anything doesn't work correctly, you should report, in detail, via the bug tracker.