Re: enabling FTP passive mode?

From: John Doe (fluffy_at_fed.up.of.spam.so.i.made.this.up)
Date: 02/04/04


Date: Wed, 4 Feb 2004 09:35:34 +0000 (UTC)

In article <3a1d1813.0402021252.10ea7e70@posting.google.com>, LRW wrote:
> Normally I use SSH to x-files, but I have one remote tool that needs
> to send a periodic file to a machine and it's only choice is FTP.
> So, I set up the Linksys router to port forward 21 to the receiving
> PC, but whenever I try to FTP into it, I get the message:
>
> 227 Entering Passive Mode ((IP number),163,252)
> LIST -aL
>
> 425 Security: Bad IP connecting.

You need some kind of ftp_connection_tracking module of some kind if you
are port forwarding FTP requests since the port command will need
modifying by the firewall so that it contains the modified address.

Does Linksys support FTP connection tracking?

HTH,

Fluffy

-- 
woof woof


Relevant Pages

  • SMART FTP
    ... Ftp Client To Smart How ... Active Mode Ftp Port Limit Smart ... Pro Keygen Ftp Smart Client ...
    (sci.anthropology)
  • RE: Telnet/ftp problems SBS2000
    ... Please make sure your client computers are configured as both Firewall ... will find two options "Enable folder view for FTP sites" and "Use Passive ... that the control connection has been successfully established, ... (other than port 21) ...
    (microsoft.public.windows.server.sbs)
  • FTP transfer port
    ... FTP transfer port ... the FTP server "listens" for client connections on its port 21. ... it will establish a separate control connection and data connection with ...
    (bit.listserv.ibm-main)
  • Re: Hacked? External address knocks on internal private address...
    ... The important part of your message is that FTP is allowed out... ... You open a connection to an FTP Server and logon. ... When you ask the server for a file the server issues a "PORT" command ... so it can open a port on the firewall to allow the incoming Data ...
    (comp.security.firewalls)
  • Re: Question: FTP via alternate port
    ... The problem with FTP is that it requires two ports to operate. ... FTP command stream in order to dynamically open that port for the data ... Ideally the attacker would want to upload another tool onto the ...
    (Pen-Test)