[root@xl-r512-01 vsftpd]# pwd
/etc/vsftpd
[root@xl-r512-01 vsftpd]# cat vsftpd.conf
anonymous_enable=no
local_enable=yes
write_enable=yes
local_umask=022
dirmessage_enable=yes
xferlog_enable=yes
xferlog_file=/var/log/vsftpd.log
xferlog_std_format=yes
idle_session_timeout=600
data_connection_timeout=120
ftpd_banner=welcome to pp service.
chroot_list_enable=yes
chroot_list_file=/etc/vsftpd/chroot_list
userlist_deny=no
userlist_file=/etc/vsftpd.usr_list
listen=yes
pam_service_name=vsftpd
tcp_wrappers=yes
userlist_enable=yes
local_max_rate=500000
max_clients=200
max_per_ip=3
[root@xl-r512-01 vsftpd]# touch chroot_list
[root@xl-r512-01 vsftpd]# touch /etc/vsftpd.usr_list
[root@xl-r512-01 vsftpd]# service vsftpd start
此为被动模式的ftp iptables 如下: