Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Chriss Miller on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

ftp trouble - netout :connection reset by peer

Status
Not open for further replies.

ahaws

Programmer
Nov 28, 2001
355
US
Hello all.
I recently had to bring the server down and resinstall WINNT 4.0 server.

My fTP site worked properly before, and I have checked all permissions accordingly.

I can remotely login to FTP and my username and password are accepted. It is when I command a GET or PUT that results in-

command: get id.txt
200 PORT Command successful.
150 Opening ASCII mode data connection for id.txt(10464 bytes)
>ftp: get:connection reset by peer

command: put c:/id.txt
200 PORT Command Successful
150 Opening ASCII mode data connection for id.txt (10464 bytes)
>netout :connection reset by peer.


As I said, I've got all permissions set correctly, and I made sure the the FTP service was started. The only other factor that I was thinking was that we go through a FIREWALL that is upstairs and is shared with the county
(this is government for you).
They have restrictions set for the LAN such as no chat sites...do you think that they could have their permissions on the FIREWALL blocking my FTP transactions?

Please, any help is appreciated!
Thanks
Angie [nosmiley]
 
Probably not the firewall. Firewalls are set up to allow or deny traffic via certain protocols/sources/destinstions/ports/etc.
The fact that you can connect to the ftp site tells me that you are gettting past the firewall. The Get/Put functions are specified through the ftp permissions on the ftp server itself.

I'm not sure what the problem is though, but its most likely not the firewall. ________________________________________
Check out
 
hello SgtB-

I was hoping you werent going to say that! I did some fiddling and found that if I get on the server itself, log in as a normal user (RWX)(same username I log in remotely with), it will upload and all is good.

The permissions that are set for the FTP site include Administrators(full control)- which is me - and even when I log into the fTP server remotely with my administrative username and password, I get the same errors...So if the administrator cannot upload or download, what could be the problem? Also, made sure Administrator had full control of the ftproot directory and below....
Lemme know
Thanks again, angie
 
Just a thought, FTP actually runs on two ports - 20 and 21. Port 21 is the control port, which handles all the commands from the client, while 20 handles the data transfer... You might want to check the firewall rules to ensure both ports are allowed.

Have you tried a PASSIVE mode transfer?

Did anything change on the firewall while you reinstalled the FTP server? [auto] MCSE NT4/W2K
 
You will never belive this!!!

I bet you are using IE as your ftp client!

Go into tools/internet options/advanced/and UNCHECK "Enable folder view for FTP sites"

This will then work (sets the ftp into passive as stated above)

Microsoft always the kidder!

( please do try it should work!)
 
hey guys!

dhawthorne..youve got a good point..didnt check both ports with county...but they should have known. I do not deal with the firewall myself, but I'll give a call upstairs...

i3vy - Im using the command prompt:
c> ftp ftp.sitename.com

Maybe I can try the IE route and let you know what that does..the passive way...thanks alot and I'll get back with you.

Angie[turkey]
PS...Happy Thanksgiving!! (For all of those in the USA!)
 
The firewall should only have to forward port 21 requests to the ftp server ip address and 'keep state' or similar to allow the subsequent data transfer (server port 20 to client port > 1024). This restricts your server to active transfers only, however. For passive transfers to work you have to open up a whole bunch of higher ports on the firewall and, ideally, specify a passive port range on the server. I don't think you can do this on nt 4.0 as I don't remember seeing that in any dialog but it may be a registry key? Maybe a 3rd party ftp server is better suited for passive transfers. A well referenced article on active/passive ftp is available at the following URL:

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top