Strange port 20/21 problem with Netgear RT314 Router

From: QV (qv_at_qvnospam.com)
Date: 11/27/05

  • Next message: Daffy: "Re: Firewall Memory Key"
    Date: Sun, 27 Nov 2005 05:14:48 GMT
    
    

    I'm trying to configure a relatively secure home FTP server that will only
    accept connections from my work PC.

    On my home network, I'm running the FTP service on a Linux (Mandriva 2005)
    box. In my Netgear router, I forwarded port 21 to the Linux box and created
    a filter rule that drops any port 21 packets NOT originating from my work IP
    address.

    Things appeared to work well in that I could connect to the FTP server from
    my work PC and not from any other external PC. However, when I ran GRC's
    ShieldsUP test and Sygate's Security Scan from my home network, both tests
    showed that while my port 21 was stealthed, my port 20 was NOT stealthed (it
    was closed).

    Why the heck is my port 20 unstealthed when port 21 is the one and only port
    forwarded to the Linux PC? I realize that I can create a filter rule to
    block unwanted port 20 traffic as well, but how is it getting through in the
    first place if I'm not forwarding port 20 and port 21 is stealthed? It
    almost seems like the Netgear router is port-forwarding 20 and 21, even
    though I only specied port 21. This really has me scratching my head.

    Any insight would be appreciated. Thanks.


  • Next message: Daffy: "Re: Firewall Memory Key"

    Relevant Pages

    • RE: blocking IPs for FTP server
      ... With Port Sentry you can use the Advanced Stealth Scan Detection. ... blocking IPs for FTP server ... holding too many open connections. ...
      (Security-Basics)
    • RE: Hidden windows ports, files and services.
      ... also apply for IE's cache. ... be the work of a root kit of some sort. ... and I'd like to analyze the ftp server. ... |was by doing an nmap port scan of the system. ...
      (Security-Basics)
    • Re: Hidden windows ports, files and services.
      ... and I'd like to analyze the ftp server. ... Prior to XP SP2, I used to be able to go through the c$ share and see ... was by doing an nmap port scan of the system. ... downloaded fresh version of each and tried again. ...
      (Security-Basics)
    • Re: Ports necessary for running a FTP-server?
      ... The FTP server should be listening on the LAN IP address of the Winroute ... The port mapping should redirect FTP traffic to the Winroute LAN ... >> install will not allow an Internet client to connect to a Winroute ...
      (comp.security.firewalls)
    • Re: Why do i need to use passive transfers?
      ... data connection from its TCP port 20 to a port specified by the FTP client ... The FTP server in PORT mode does not try ... The reason why PASV mode works so often behind a firewall is that the ... establish the data connection with the client. ...
      (comp.security.firewalls)