firewalld: ERROR: INVALID_MODULE: nf_nat_ftp

Solution Verified - Updated -

Issue

It is not possible to include nf_nat_ftp module into firewalld configuration.

According to a manual page man firewall-cmd modules are expected to be included using mentioned syntax:

       --permanent --service=service --add-module=module
           Add a new module to the permanent service.

but including of nf_nat_ftp kernel module for ftp service using mentioned syntax leads to the following error :
Error: INVALID_MODULE: nf_nat_ftp

As the result, netfilter modules couldn't be loaded automatically after complete reload or restart of firewalld service.

Environment

OS: RHEL7.3

Packages:
firewalld-0.4.3.2-8.el7.noarch
kernel-3.10.0-514.el7.x86_64

Subscriber exclusive content

A Red Hat subscription provides unlimited access to our knowledgebase of over 48,000 articles and solutions.

Current Customers and Partners

Log in for full access

Log In