Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Hi, Problem accesing FTP behind pfsense firewall

    Scheduled Pinned Locked Moved Firewalling
    46 Posts 5 Posters 17.4k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      doktornotor Banned
      last edited by

      @johnpoz:

      Yeah would be curious to what ftp server you were using as well

      MicroShit IIS. There's a screenshot a page back.  ::)

      1 Reply Last reply Reply Quote 0
      • KOMK
        KOM
        last edited by

        I saw that screen but it told me nothing.  I don't use IIS for anything, ever.  It figures, though.  Microsoft.

        1 Reply Last reply Reply Quote 0
        • D
          dvirshiber
          last edited by

          well, i have 2 ftp servers , one with 2008 and one with 2003. (no 3rd party application, just the classic iis managment)
          the problem were at the two of them.

          After the Zilla installation (btw it can't be install on 2003 , just from 2008 and above…) i configure the passive port range (again) but at the setting windows of the Filezilla, and it works like magic.

          Actually i installed the zilla only for it's LOG , and on the way it solved my problem so i'm good with it.

          my next step is to set the VPN users (instead the endpoint connect of the checkpoint VPN)  , but i'm sure it will be more easier , elsewhere my managers will probably kill me .

          1 Reply Last reply Reply Quote 0
          • D
            doktornotor Banned
            last edited by

            @KOM:

            It figures, though.  Microsoft.

            Yeah. They get the ftp.exe client totally wrong, and the server is no better.

            1 Reply Last reply Reply Quote 0
            • johnpozJ
              johnpoz LAYER 8 Global Moderator
              last edited by

              I have not had to deal with ftp in IIS for YEARS and YEARS..  Would have to fire up a copy to see if it lets you set the IP to use for passive when its on a private?  There are much better options for ftp servers than IIS that is for sure ;)

              To be honest you should try and get away from ftp altogether and use either sftp or just plain http or https.

              An intelligent man is sometimes forced to be drunk to spend time with his fools
              If you get confused: Listen to the Music Play
              Please don't Chat/PM me for help, unless mod related
              SG-4860 24.11 | Lab VMs 2.8, 24.11

              1 Reply Last reply Reply Quote 0
              • D
                dvirshiber
                last edited by

                Yes , i will think about it. maybe you right.

                Our company developing a desktop software for nursing homes , and long time care hospitals that one of it's features is to get lab results automaticaly .(u know like hemoglobin, rdw ,wbc, cholesterol …)
                So the way we choose to perform this operation is to connect to the FTP via activeX and simply download the HL7 files (if u familiar with web services) that belongs to the hospital.

                Every hospital have a uniqe ID , so at the FTP server we created a folder tree , every folder is the uniqe id of each hospital.

                thats why we choose to work with ftp , so every client after they connect to the server operate 3 simple commands:
                CD <unique id)="" <br="">mget *.hl7
                del *.hl7
                (bye)

                i'm not sure i will succeed the same proccess with other protocol like http to control these commands.</unique>

                1 Reply Last reply Reply Quote 0
                • D
                  doktornotor Banned
                  last edited by

                  @dvirshiber:

                  connect to the FTP via activeX

                  You'd better avoid more details…

                  1 Reply Last reply Reply Quote 0
                  • KOMK
                    KOM
                    last edited by

                    Yeah, the FTP via ActiveX kind of hit me too.  Ancient insecure Internet protocol combined with ancient insecure MS technology.  And this is something you're developing new, or some old thing you are tasked with maintaining?  Sending patient data over unencrypted links.  Is that even HIPAA Title II-compliant?

                    1 Reply Last reply Reply Quote 0
                    • D
                      doktornotor Banned
                      last edited by

                      The only thing missing in the nightmare mix is some nifty Flash management GUI… HIPAA or not -- but dude, you realize you are dealing with highly sensitive personal data?!?  :o :o :o

                      1 Reply Last reply Reply Quote 0
                      • D
                        dvirshiber
                        last edited by

                        :-)

                        OK , so i'm using this (very) weird thread to ask an "off-topic" question:

                        If i will install a simple pci wireless network adapter, will that linux machine become a wireless router ?
                        i mean , can i turn that new adapter into  wlan interface?

                        If that's not fit here, i can post a new thread but i think i wore you out anyway … (passive aggresive...)

                        1 Reply Last reply Reply Quote 0
                        • johnpozJ
                          johnpoz LAYER 8 Global Moderator
                          last edited by

                          Why would anyone in their right might do that??  When you can pick up a wireless router for say $20 and use it just as AP, or you could get a TRUE AP for less than <$100 for sure..  Shit for $149 you can get new unifi AC pro AP… Why would anyone stick a pci card in a pc and want to use that as a AP???  Why Why Why??

                          Oh prob the same people that think is ok to send personal information of their customers over a unencrypted ftp xfer ;)

                          https://www.ubnt.com/unifi/unifi-ap-ac-pro/

                          The lite model is going to run for under $90...

                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                          If you get confused: Listen to the Music Play
                          Please don't Chat/PM me for help, unless mod related
                          SG-4860 24.11 | Lab VMs 2.8, 24.11

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.