Re: Firewall blocks FTP attempts

From: Travis Casey (efindel@earthlink.net)
Date: 01/21/02


From: Travis Casey <efindel@earthlink.net>
Date: Mon, 21 Jan 2002 21:19:44 GMT

Nel wrote:

> I use the firestarter firewall on SuSE Linux 7.1. I wanted to set up an
> FTP server and have specified this in the wizard. I've opened the needed
> ports (21 an 20 udp and tcp), but the firewall still blocks it some way. I
> get some error message of illegal port connection with WS_FTP when I try
> to connect. The firewall reports a hit on some high port after a
> connection attempt; port 31885 or something and it changes at every
> connection attempt. Can anybody explain me what this is for and how I can
> fix this, I can't just open the connection for that high port because it
> changes every time.

Sounds like your client is using passive-mode FTP. See if you can reset it
to not use that.

-- 
ZZzz   |\      _,,,---,,_     Travis S. Casey  <efindel@earthlink.net>
       /,`.-'`'    -.  ;-;;,_   No one agrees with me.  Not even me.
      |,4-  ) )-,_..;\ (  `'-'
     '---''(_/--'  `-'\_)



Relevant Pages

  • Re: AS4.2/WM5/OUTLOOK2K3 suddenly not syncing, please help
    ... there is a connection EXIST between the device because I ... connection on port 26675 but on the PPC the port number keeps ... Outlook, countless times of reinstalling Activesync, removing Windows ... Firewall set to NO). ...
    (microsoft.public.pocketpc.activesync)
  • Re: Hacked? External address knocks on internal private address...
    ... The important part of your message is that FTP is allowed out... ... You open a connection to an FTP Server and logon. ... When you ask the server for a file the server issues a "PORT" command ... so it can open a port on the firewall to allow the incoming Data ...
    (comp.security.firewalls)
  • RE: FTP Window of opportunity?
    ... target on the line when in reality it was just a firewall lying to them. ... The connection connects and then immediately ... Subject: FTP Window of opportunity? ... the FTP port shows up. ...
    (Pen-Test)
  • [NEWS] Multiple Firewalls Ruleset Bypass through FTP Revisited
    ... a new attack method affected most leading firewall ... connect to a restrictive port. ... resend control strings supplied by the attacker that a vulnerable firewall ... Connect to FTP server and log on ...
    (Securiteam)
  • Re: WDSC, VPN, and RPG Editing
    ... With some machines I can have a 24 hour connection, ... thru port 23 using telnet. ... iSeries server to make sure they are configured to allow the ... through the firewall. ...
    (comp.sys.ibm.as400.misc)