Mailinglist Archive: opensuse-security (343 mails)

< Previous Next >
Re: [suse-security] kernel 2.4: ipchains and ip_masq_ftp
  • From: Agustin Muñoz <agustin@xxxxxxxxxxxx>
  • Date: Tue, 31 Jul 2001 15:52:24 +0200
  • Message-id: <>
Maybe I'm wrong but the kernel was not patched to the ip-conntrack-ftp, it was patched iptables ( .

Best regards


At 14:03 31/07/01 +0200, Stefan_Walther@xxxxxxxxxxxx wrote:


thats right. But I use a 2.4.7 from on my SuSE system. I think
the patch is applied to this version. I take this kernel, because I
recognized that some featurs I need are not implemented in the SuSE


Stefan Walther
dienst.: +4930/89786448
Funk: +49172/3943961

One thing to bear in mind with this approach : AFAIK the stock SuSE 7.2
2.4.4 kernel hasn't been patched to close the serious security hole in
ip_conntrack_ftp, so if security is of any importance at all, and you have
to allow FTP, 2.2.19 is probably better.

just my 2 cents.


Maf. King
Standby Exhibition Services


"It is easier to do a job right than to explain why you didn't."

- Martin Van Buren


To unsubscribe, e-mail: suse-security-unsubscribe@xxxxxxxx
For additional commands, e-mail: suse-security-help@xxxxxxxx

< Previous Next >