Solved

Firewall Running FTP Service

Posted on 2006-07-06
2
357 Views
Last Modified: 2013-11-16
Hi folks, this is the current background of the connectivity issue i am having ...

Windows 2003 Standard Edition SP1, with Blackice Server protection as our main firewall, this is a dedicated server in usa, lets say our public internet ip adress is 209.73.186.238 ... our public gateway ip lets say is 209.73.186.1  ...

Our ftp service must run on port 47792 ...


The ftp we are using is Titan Ftp server, i´ve checked the box where " we are behind a router/cable/firewall" and typed the public gateway ip let say 209.73.186.1 .

In our firewall ( ISS Blackice Server Protection) i´ve opened ports 47792, and ports for passive mode 10000 - 10020, pointing to 209.73.186.238.


Am i missing something? because i cannot access the ftp from the outside .. (internet) ...

 
0
Comment
Question by:enigmateam
2 Comments
 
LVL 12

Accepted Solution

by:
GinEric earned 500 total points
ID: 17051022
You may still have to open port 21.

Windows Server 2003 is notorius for closing or stealthing ports, even DNS port 53.  The approach is ridiculous.  Unlike nVidia's firewall, Windows comes with no list of blocked ports. NVidia does a much better job, allowing you to unblock inbound and outbound, and to allow things like critical services.

With Windows, you have to go to somewhere in their Security or Firewall properties and unblock all the ICMP and other ports that a server needs just to work with the Internet.

I don't know about Blackice, but I imagine they have the same problem.  You can't stealth or block a port if you're going to use it effectively inbound or outbound.

Windows makes too many decisions for the administrator of a network.  And it's hard to undo their decisions.  The approach may be fine for workstation software, but it is bad for servers.

Once some programmer in Redmund takes away your decisionmaking authority, you have to go through a lot of hoops to get it back and it's not easy.

Windows and other security software should basically get their nose out of the administrator's decisionmaking, and, administrators should take on that responsibility.

Check all of your ports, probably one at a time, and see if it opens the ftp back up.

Good luck with 65,536 ports.
0
 
LVL 13

Expert Comment

by:prashsax
ID: 17051491
Is BlackICE the only firewall protecting your Server.

Does your router has some access-list on it. Have you opened ports 47792 and 10000...10020 on router as well.

If you have any other firewall between router and server, then you must open the ports on it as well.

Then from outside use this URL in IE.

ftp://your_public_ip:47792

You must specify port number as your ftp is not running on default port 21.
0

Featured Post

Enterprise Mobility and BYOD For Dummies

Like “For Dummies” books, you can read this in whatever order you choose and learn about mobility and BYOD; and how to put a competitive mobile infrastructure in place. Developed for SMBs and large enterprises alike, you will find helpful use cases, planning, and implementation.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
iptables limit connection per ip correct way ? 2 84
ipsec tunnel comme not up 10 71
SQL BACKUP - 2008 R2 8 59
IP Address -- lookup location ? 4 64
Encryption for Business Encryption (https://en.wikipedia.org/wiki/Encryption) ensures the safety of our data when sending emails. In most cases, to read an encrypted email you must enter a secret key that will enable you to decrypt the email. T…
How important is it to take extra precautions to protect your online business? These are some steps you can take to make sure you're free of any cyber crime.
The viewer will learn how to successfully download and install the SARDU utility on Windows 8, without downloading adware.
XMind Plus helps organize all details/aspects of any project from large to small in an orderly and concise manner. If you are working on a complex project, use this micro tutorial to show you how to make a basic flow chart. The software is free when…

929 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

19 Experts available now in Live!

Get 1:1 Help Now