• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

Can't connect to FTP server

Scheduled Pinned Locked Moved General pfSense Questions
7 Posts 2 Posters 1.7k Views
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • B
    Biffe
    last edited by May 6, 2013, 7:56 AM

    We installed PF Sense, and everything is working great. But I got a problem with one of the users that can't connect to a ftp server. I hope that you guys know what I have to check/uncheck, im not that skilled with firewalls, so bear with me if I missed out any needed information.

    Best regards

    Kenneth

    1 Reply Last reply Reply Quote 0
    • W
      wallabybob
      last edited by May 6, 2013, 8:44 AM

      @Biffe:

      But I got a problem with one of the users that can't connect to a ftp server.

      I presume its a user on the LAN side of pfSense attempting to connect to a FTP server on the Internet. Normally FTP client will connect to FTP server and give the server a port number so the server can connect back to the client. One connection is used for control, the other for data transfer. The connection from server back to the client is normally blocked by a firewall. The user should give the appropriate ftp command to set the server into passive mode so that the client opens both connections rather than the server opening one.

      1 Reply Last reply Reply Quote 0
      • B
        Biffe
        last edited by May 6, 2013, 9:53 AM

        Thank you for the input on the issue, If I get the IP + port number from her, can you guide me trough how to setup pfsense.

        Thanks

        Kenneth

        1 Reply Last reply Reply Quote 0
        • W
          wallabybob
          last edited by May 6, 2013, 10:26 AM May 6, 2013, 10:24 AM

          @Biffe:

          Thank you for the input on the issue, If I get the IP + port number from her, can you guide me trough how to setup pfsense.

          No.
          1. You haven't given me configuration information: ftp from which pfSense interface TO which pfSense interface.
          2. As previously mentioned, in certain configurations no firewall tweaking is required.
          3. The port assigned by the ftp client for the ftp server to connect commonly varies for every invocation of the ftp client.
          4. There is no proper diagnosis of the original problem, only my speculation.

          1 Reply Last reply Reply Quote 0
          • B
            Biffe
            last edited by May 6, 2013, 11:02 AM

            1. You haven't given me configuration information: ftp from which pfSense interface TO which pfSense interface.
            Local machine on our Lan needs to connect to an outside FTP server (wan)

            2. As previously mentioned, in certain configurations no firewall tweaking is required.
            We can't change anything on the FTP server, so i think we need a bit of tweaking since its being refused as it is.

            3. The port assigned by the ftp client for the ftp server to connect commonly varies for every invocation of the ftp client.
            Ill try to find out the ftp details, she just mailed me that it wasnt working anymore after the new firewall was installed.

            4. There is no proper diagnosis of the original problem, only my speculation.
            Correct speculations.

            Kenneth

            1 Reply Last reply Reply Quote 0
            • W
              wallabybob
              last edited by May 6, 2013, 12:57 PM May 6, 2013, 12:54 PM

              @Biffe:

              We can't change anything on the FTP server, so i think we need a bit of tweaking since its being refused as it is.

              Check the documentation for the ftp client being used. ftp client on my Ubuntu netbook will enter passive mode if the client is invoked with the "-p" command line option, for example:```
              ftp -p 192.168.1.1

              1 Reply Last reply Reply Quote 0
              • B
                Biffe
                last edited by May 6, 2013, 2:07 PM

                Problem solved.

                Our ISP changed our IP number a few weeks back during the firewall setup, and the FTP she connects to filter off any non verifyed IPs, and since they didnt have our new IP it was just rejected. Sorry to have taken your time with this.

                Kenneth

                1 Reply Last reply Reply Quote 0
                7 out of 7
                • First post
                  7/7
                  Last post
                Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.
                  This community forum collects and processes your personal information.
                  consent.not_received