Cannot FTP into LAN after upgrading 2.2/2.3

  • Hi All,

    I am facing an issue where I cannot get my clients(on WAN side) to connect to FTP server (On LAN side). I have installed the ftp-proxy and also included the conntrack and passive rules to the ftp server. Whenever I try to connect via Filezilla it disconnects right after the PASV command.

    Below is the network:

    3750 Switch (WAN) >>>>>(WAN)Pfsense(LAN)>>>>>FTP Server.

    When I run a copy ftp command it times out. I can telnet to port 21 and without pfsense it works just fine.

    Windows cmd ftp works fine and filexilla work fine for active mode. However for passive I just cant seem to connect.

    Got to know that the ftp-proxy is not intended for the above purpose. Can anyone provide any suggestions? Also, this issue is seen after upgrading from 2.1 >2.2 and 2.3

    Appreciate your help.


  • LAYER 8 Global Moderator

    the ftp package is for active outbound connections.

    If you wan to use inbound passive then you need to setup your ftp server to use specific ports and forward them.  AND you need to make sure your ftp server hands out your actual public IP and not its rfc1918 IP.

    If you PM me your IP and some creds I can tell you exactly what your ftp server is telling you for what passive port to connect to and what IP..

  • Hi John,

    Just PM'd you.


