Re: active ftp through firewall

phn_at_icke-reklam.ipsec.nu
Date: 05/19/04


Date: Wed, 19 May 2004 19:16:19 +0000 (UTC)

In comp.security.misc Pamela <dey_indrani@hotmail.com> wrote:
> I am trying to send PORT command to a ftp server from the firewall
> machine. I am sending the puclic ip address to the ftp server. Looks
> like port command is successfull because I get status = 200 for it.
> But after that ftp server unable to initiate data connection to that
> port.

> I am able to do data connection using passive connection to this ftp
> server but not able to make active connection.

Your firewall is not smart enough to handle "normal" ftp. Replace fw
or continue using passive ftp.

-- 
Peter Håkanson         
        IPSec  Sverige      ( At Gothenburg Riverside )
           Sorry about my e-mail address, but i'm trying to keep spam out,
	   remove "icke-reklam" if you feel for mailing me. Thanx.


Relevant Pages

  • [NEWS] Multiple Firewalls Ruleset Bypass through FTP Revisited
    ... a new attack method affected most leading firewall ... connect to a restrictive port. ... resend control strings supplied by the attacker that a vulnerable firewall ... Connect to FTP server and log on ...
    (Securiteam)
  • Re: tried everything- cannot publish to web
    ... the path to the FTP server correctly, ... firewall, and/or a third party firewall included in a antivirus suite, or a ... looking at the instructions from Yahoo about how to upload your site, ... how to use their control panel to upload your files. ...
    (microsoft.public.publisher.webdesign)
  • Re: Ftp server behind a router issue
    ... A firewall must protect the ... It means that DMZ is separated from Internet ... If your local ftp server uses a private IP address and DLink DI-604 firewall ... In your case, you access your ftp server from Internet, maybe PORT command ...
    (comp.security.firewalls)
  • Re: Please help I have been hacked!!
    ... a port scanner such as superscan from www.foundstone.com ... a firewall with logging set up and that blocks outbound connections as ... The port scanner will help you to see if other computers are running FTP ... Fport will help you tell whether Microsoft IIS FTP server is being ...
    (microsoft.public.win2000.security)
  • Re: data upload causes increase in CPU activity and network slowdouwn. (SOLUTION)
    ... I found Zonealarm was the cause of this. ... Simply closing the firewall didn't cure the problem, ... > Very strange behaviour on my home computers here. ... > from my home computer to a remote FTP server, ...
    (microsoft.public.windowsxp.network_web)