vsftpd hanging after receiving password, pure-ftpd works

From: B Wooster (bwooster47_at_gmail.com)
Date: 05/27/05

  • Next message: Matthew Miller: "Re: No FC2 updates anymore in all repo's?"
    Date: Fri, 27 May 2005 10:14:19 -0400
    To: For users of Fedora Core releases <fedora-list@redhat.com>
    
    
    

    I am stumped trying to debug this problem - it looks like a vsftpd config
    issue, does not look like a firewall issue - since I tried another FTP
    server (Pure-FTPD), and it works fine.

    Whenever I try to FTP from outside my firewall, I get the "Connected"
    message, then I enter the User, and then Password:
    After entering password, the is no activity for five minutes, and then I get
    a "421 Timeout.
    Login failed.
    No control connection for command: Permission denied"
    at the client.

    Looking at vsftpd.log on my server, I see:
    Thu May 26 07:15:41 2005CONNECT: Client "nnn.nnn.nnn.11"
    Thu May 26 11:15:41 2005FTP response: Client "....11", "220 (vsFTPd 2.0.1)"
    Thu May 26 11:15:43 2005FTP command: Client "....11", "USER hhh
    Thu May 26 11:15:43 2005FTP response: Client "....11", "331 Please specify
    the password."
    Thu May 26 11:15:45 2005FTP command: Client "....11", "PASS <password>"
    Thu May 26 11:20:43 2005FTP response: Client "....11", "421 Timeout."

    I looked at my firewall logs on my server, and it shows no suppression or
    blocking of access at that time.

    Is there any more debugging I can turn on, or anything else to try at vsftpd
    server end?

    I can use FTP inside the firewall, which seems to suggest a problem with the
    firewall, but as I mentioned, none of the FTP server firewall logs show
    anything, and using other servers such as Pure-FTPD makes everything work
    just fine.

    Is there any additional logging I can turn on in vsftpd, or if anyone has
    any other suggestions to try, let me know.

    I'm using Fedora FC3: 2.6.11-1.14_FC3, vsFTPd 2.0.1

    
    

    -- 
    fedora-list mailing list
    fedora-list@redhat.com
    To unsubscribe: http://www.redhat.com/mailman/listinfo/fedora-list
    

  • Next message: Matthew Miller: "Re: No FC2 updates anymore in all repo's?"

    Relevant Pages

    • Re: Being hacked...
      ... Are you offering a webserver and ftp server to users on the internet as per having ... FTP and HTTP open? ... For internet attacks what I would look for is patterns in the firewall ... I am not an expert on IIS by any means but I do know if you are using FTP and IIS you ...
      (microsoft.public.win2000.security)
    • Re: Bug with W2K3, SP1, Windows Firewall and FTP
      ... Port) in the Exceptions tab and uncheck the pre-defined FTP Server in the ... list and exception is allowed (of coz tight to the scope of your exception ... I decided to try adding a port 21 in the firewall exception list just to ...
      (microsoft.public.inetserver.iis.ftp)
    • Re: Bug with W2K3, SP1, Windows Firewall and FTP
      ... I only enabled the FTP Server service in advance settings. ... just the 'network connection setting' in the firewall advanced tab or you ... Windows Firewall behavior? ...
      (microsoft.public.inetserver.iis.ftp)
    • Re: CEICW fails at firewall config
      ... Do you or do you not have ISA 2000 or ISA 2004 installed on the SBS server? ... Do you have 2 NICs in the SBS? ... CEICW fails on firewall configuration every time. ... >>> Call to Creating the protected networks access rule returned ok. ...
      (microsoft.public.windows.server.sbs)
    • Re: Recycler security issues on IIS server
      ... > latest upates to the server. ... > like to see the server put behind our firewall, ... other software, install all patches, IISlockdown, URLscan, use the correct ... the procedures you follow may vary depending on your security needs. ...
      (microsoft.public.inetserver.iis.security)