Cannot access my FTP server using VIP as proxy ARP



  • Dear Team,

    I'm having an issue while trying to access my FTP server behind the PFSENSE box. I've created a Proxy ARP VIP using the address 190.x.x.98 and doing NAT port forward to my internal address 192.x.x.7

    I access the FTP site using the external address (VIP) with the filezilla client and just got the "connection established…"..but no directory list is being displayed.

    This is my NAT configuration
    WAN TCP 21 (FTP) 192.x.x.7 (ext.: 190.x.x.98) 21 (FTP) Secondary FTP serve
    WAN TCP 20000 - 20050 192.x.x.7 (ext.: 190.x.x.98) 20000 - 20050 Secondary FTP server

    Any help would be much appreciated.

    Thank you.

    best regards,
    Carlos.



  • Just had the same issues.

    My fix was to enable passive mode in vsftp and do some port forwards for the passive ports and that did the trick. The problem I had was that I could not resolv the external IP, only the internal which does not work with passive mode.

    Since you don't write what version of pfsense nor what FTP application it's pretty hard to give you direct help. For me anyway!



  • @c0urier:

    Just had the same issues.

    My fix was to enable passive mode in vsftp and do some port forwards for the passive ports and that did the trick. The problem I had was that I could not resolv the external IP, only the internal which does not work with passive mode.

    Since you don't write what version of pfsense nor what FTP application it's pretty hard to give you direct help. For me anyway!

    Hi c0urier

    To be exact, the PFsense version I'm using right now is 1.2.3 and the FTP server is Filezilla. I thinks it's something related to the VIP since I'm able to reach interally the ftp box.

    Hope this clarification could give more lights on this.
    Thank you.

    Carlos.


Log in to reply