Regression between 4.6.2 and 4.8.17: ftp and iptables

From: Michael Monnerie
Date: Thu Mar 09 2017 - 02:27:02 EST

We have a server with vsftpd-2.0.7-4.35.1 on SUSE SLES 11.3 and use iptables local firewall
With kernel 4.6.2 it runs normal, when using 4.8.17, ftp doesnât work anymore. It seems iptables doesnât open the port for the passive ftp connection from the client.

The options for the kernel should be the same, although a diff between the two configs spits a lot of lines.
I donât find any mistake from our side, so I guess there was a change in the kernel?

Please ask me directly in case of questions, Iâm not on linux-kernel.

mit freundlichen GrÃssen,
Michael Monnerie

Description: Zip compressed data