Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations IamaSherpa on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

proftpd behind 'new' firewall

Status
Not open for further replies.

SLG

MIS
Dec 19, 2001
106
US
I have proftpd running on my server behind my firewall. It's been working fine for years until the other night when the firewall died and I replaced it with a NetGear FSV318v3.

Now, even though I am forwarding the same passive ports, I can not connect to my FTP server from the outside world.
Here is my setup:

ServerName "ftp.server.com"
ServerType standalone
DefaultServer on

Port 21

# External Static IP
MasqueradeAddress 1.2.3.4
PassivePorts 65000 65535

Obviously, I'm port forwarding the passive ports 65000 - 65535 to my ftp server.

My previous firewall was a Symantec Firewall/VPN 200 and it worked fine with the same exact setup.

Does anyone know if there is a problem with this setup on a NetGear Firewall?

Thanks in Advance!!!


 
I would assume NetGear can help...

If it were an IPTables firewall, I would say that you hadn't enabled enough modules... specifically the ipt_conntrac which allows for PASV to make the transition between connection origination and switch into PASV mode. Has to do with 'existing' connection handling as I understand it.

Perhaps that's a tip you can translate back to your NetGear settings?

D.E.R. Management - IT Project Management Consulting
 
Unfortunately, Netgear was not that much help. They told me to open the passive ports up to my server and it should work. That is not the case. Since I don’t have any hair left over this I’m migrating all my users to sftp. Thanks for your input.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top