Link to home
Start Free TrialLog in
Avatar of stevendunne
stevendunne

asked on

FTP Troubles

I am having problems with ftp

Our customer is able to login to our site from a unix server but they can't get the file, the process just hangs until they terminate it. The same thing happens if they try a dir, they don't get any data returned.

They can get the file if they do it from a windows pc, through FTP DOS and Internet Explorer

Maybe it could be port translation that is causing the problem ?

Our firewall is open for port 21 only for our ftp server.

Does this ring any bells with anyone ?

Thanks
Steve
ASKER CERTIFIED SOLUTION
Avatar of brunomsilva
brunomsilva

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of stevendunne
stevendunne

ASKER

We put a new firewall in last weekend and the problems have only occurred from Monday.

However if they can retrieve the file through ftp DOS & Internet Explorer, what does this mean ?  

I think maybe a unix issue ?
have you tried what i said? after the login type pasv at the ftp prompt
They have just tried it in passive/active mode, but when they dont run it in this mode they can connect but cant download ?
Just what is FTP DOS ????

If you open only port 21 to your server, no FTP mode will work by protocol design
Avatar of Tintin
When you say:

"They have just tried it in passive/active mode, but when they dont run it in this mode they can connect but cant download ?"

Does that mean they can download in passive mode or not?
:-)
when port 21 is open they can connect but cannot do anything else.
the problem is in firewall, it interferes with normal operation, please ask people maintaining firewall to pass ftp in adequate manner.
For reference,  http://slacksite.com/other/ftp.html is an excellent page describing in detail the mechanics of FTP.
port 21 have to open for both onbond and outbond for normal FTP client!

Most firewalls recognise this.
Name one please
This is the current situation

We have moved to a new FW and have opened this for port 21 for the ftp server, just like we did on the old firewall.

From home I'm able to login to our ftp site retrieving the files through windows dos, using the ftp commands etc.  I can also retrieve the files via internet explorer

I've even dialled up at worked using a dial up account and can view and retrieve the files from windows dos and through internet explorer.

I've even asked a guy at another site to test from his LAN through his firewall and it fine.

One of my customers cannot connect & download the files using windows dos or internet explorer.  The other customer cannot retrieve the files via UNIX, it connects but just hangs on trying to retrieve the files.

A very very odd one !

:-(
Excuse me, but wtf is "Windows DoS" ???
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
I've managed to resolve this now for the 2-3 customers who were affected.  Basically on the firewall on advanced options not access rules, I enabled "Force inbound & outbound FTP to default to port 20"

However we send a file into one of our customer sites via one of our pc's, before it was setup that this particular pc was published on the internet with tcp\high-ports open the firewall to that pc.  Now I've enabled the "Force inbound & outbound FTP to default to port 20" this longer works for this particular customer.

What have they done at there to make this so tricky ?  Or is it me ?
SOLUTION
Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial