Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Cannot access my FTP server using VIP as proxy ARP

    Scheduled Pinned Locked Moved HA/CARP/VIPs
    3 Posts 2 Posters 3.6k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      shakyamuni
      last edited by

      Dear Team,

      I'm having an issue while trying to access my FTP server behind the PFSENSE box. I've created a Proxy ARP VIP using the address 190.x.x.98 and doing NAT port forward to my internal address 192.x.x.7

      I access the FTP site using the external address (VIP) with the filezilla client and just got the "connection established…"..but no directory list is being displayed.

      This is my NAT configuration
      WAN TCP 21 (FTP) 192.x.x.7 (ext.: 190.x.x.98) 21 (FTP) Secondary FTP serve
      WAN TCP 20000 - 20050 192.x.x.7 (ext.: 190.x.x.98) 20000 - 20050 Secondary FTP server

      Any help would be much appreciated.

      Thank you.

      best regards,
      Carlos.

      1 Reply Last reply Reply Quote 0
      • C
        c0urier
        last edited by

        Just had the same issues.

        My fix was to enable passive mode in vsftp and do some port forwards for the passive ports and that did the trick. The problem I had was that I could not resolv the external IP, only the internal which does not work with passive mode.

        Since you don't write what version of pfsense nor what FTP application it's pretty hard to give you direct help. For me anyway!

        pfsense: 2.1.5-RELEASE, AMD64
        Running on: MB/CPU: ASUS P8H77-I / Core i3-2120T | MEM: 8GB DDR3 | HDD: WD Blue 120GB 2.5" SATA | WAN/LAN: Fujitsu D2735-2 – Intel® chip 82576NS | WLAN: Realtek® 8111F PCIe | Connection: 1000/1000Mbit (Bredband2.com)
        [/U

        1 Reply Last reply Reply Quote 0
        • S
          shakyamuni
          last edited by

          @c0urier:

          Just had the same issues.

          My fix was to enable passive mode in vsftp and do some port forwards for the passive ports and that did the trick. The problem I had was that I could not resolv the external IP, only the internal which does not work with passive mode.

          Since you don't write what version of pfsense nor what FTP application it's pretty hard to give you direct help. For me anyway!

          Hi c0urier

          To be exact, the PFsense version I'm using right now is 1.2.3 and the FTP server is Filezilla. I thinks it's something related to the VIP since I'm able to reach interally the ftp box.

          Hope this clarification could give more lights on this.
          Thank you.

          Carlos.

          1 Reply Last reply Reply Quote 0
          • First post
            Last post
          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.