The UK Home Automation Archive

Archive Home
Group Home
Search Archive


Advanced Search

The UKHA-ARCHIVE IS CEASING OPERATIONS 31 DEC 2024

Latest message you have seen: Clipsal Ulti Wireless


[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: Fw: FTP passive ports for firewalls



Kieran,

Thanks for that.  The ftp server I'm using is the standard Micro-shaft IIS
Varity bundled with Win2k server.

I can get PORT mode to work by opening ports 20 and 21 on my router, but
passive mode - nada!

Cheers again

Stuart

-----Original Message-----
From: Broadfoot, Kieran J [mailto:Kieran.Broadfoot@xxxxxxx]
Sent: 21 January 2003 17:23
To: 'ukha_d@xxxxxxx'
Subject: RE: [ukha_d] Fw: FTP passive ports for firewalls


Stuart,

The following website gives excellent details on this subject.  I don't know
what type of ftp server youll be using but must unix ftp servers can be
configured to only use certain >1024 ports which simplifies your firewall
rules greatly.

hope this helps
kieran

http://slacksite.com/other/ftp.html


-----Original Message-----
From: Dan [mailto:dtoma@xxxxxxx]
Subject: Re: [ukha_d] Fw: FTP passive ports for firewalls

Hi Stuart,

You cannot enter to an internal FTP server just opening some ports... you
need something like an application gateway.
You must trigger upper ports (>1024) opening for output for any input access
to ports 20 and 21.

If you just forward ports 20 and 21 to an internal host, then you will be
able to connect to the FTP server (first step), but not to do any other
operation, like listing a directory or copy a file.

You can try to put the computer in DMZ.. then it will be directly exposed to
the Internet.

Look at the following page for more informations about accessing internal
services through the firewall.
http://www.homenethelp.com/web/howto/apps-behind-router.asp
.. but take care.. for FTP is not enough to open one port, like on that
page. Read user comments too.

It is not the same for telnet..you can pass only port 23 and you're done.
The same for HTTP.

..but...FTP is a little bit different.

Dan

http://www.automatedhome.co.uk
Post message: ukha_d@xxxxxxx
Subscribe:  ukha_d-subscribe@xxxxxxx
Unsubscribe:  ukha_d-unsubscribe@xxxxxxx
List owner:  ukha_d-owner@xxxxxxx
List of UKHA Groups here - http://groups.yahoo.com/group/UKHA_Grouplists/

Your use of Yahoo! Groups is subject to http://docs.yahoo.com/info/terms/



**************************************************************
Franklin + Andrews is a business name of Franklin & Andrews Limited
(Registered in England No 4408389), whose registered office is at St Anne
House, Wellesley Road, Croydon, CR9 2UL

This email message and accompanying data transmitted with it are for the
sole use of the intended recipient(s) and may contain information that is
confidential. If you are not the intended recipient(s), you are notified
that any use, dissemination, disclosure, distribution or copying of this
message or data is prohibited.  If you have received this email message in
error, please notify us immediately and erase all copies of this message
and attachments.


[Non-text portions of this message have been removed]


Yahoo! Groups Sponsor
ADVERTISEMENT
HGTV Dream Home Giveaway

http://www.automatedhome.co.uk
Post message: ukha_d@xxxxxxx
Subscribe:  ukha_d-subscribe@xxxxxxx
Unsubscribe:  ukha_d-unsubscribe@xxxxxxx
List owner:  ukha_d-owner@xxxxxxx
List of UKHA Groups here - http://groups.yahoo.com/group/UKHA_Grouplists/


Your use of Yahoo! Groups is subject to the Yahoo! Terms of Service.

Home | Main Index | Thread Index

Comments to the Webmaster are always welcomed, please use this contact form . Note that as this site is a mailing list archive, the Webmaster has no control over the contents of the messages. Comments about message content should be directed to the relevant mailing list.