Problem accessing ftp site

Hi,

I recently created a FW rule in checkpoint that enables access to a ftp site on port 10000 for a particular subnet. Once the rule was created, I tested and access was possible and also possible for the user that made the request.

A few days later, user calls back saying she has no longer access to ftp site. I can reproduce the problem. When I go to the ftp site, I get the box asking my credentials. After entering, I get nothing.

Checked the tracker in checkpoint and I can see the rule giving access to the site on port 10000 but then the clean up rule gets applied because it is trying to use another port. Each time I test, the clean up rule blocks another port each time. Example: first port 11065 then next time I try port 11066 and so on. When I add the next port to my rule and test, it just block the next port.

Does anybody have any ideas why it is behaving this way and why access to the ftp site is no longer available when it was a few days before and no changes were made?

Thanks in advance for your replies.
seaprAsked:
Who is Participating?
I wear a lot of hats...

"The solutions and answers provided on Experts Exchange have been extremely helpful to me over the last few years. I wear a lot of hats - Developer, Database Administrator, Help Desk, etc., so I know a lot of things but not a lot about one thing. Experts Exchange gives me answers from people who do know a lot about one thing, in a easy to use platform." -Todd S.

seaprAuthor Commented:
Output of tracker when trying to access ftp siteI have added a screenshot of the entries I get in the tracker concerning this issue
0
seaprAuthor Commented:
I have solved the issue. Rule was too low in the list. Moved it above a blocking rule and it works.
0

Experts Exchange Solution brought to you by

Your issues matter to us.

Facing a tech roadblock? Get the help and guidance you need from experienced professionals who care. Ask your question anytime, anywhere, with no hassle.

Start your 7-day free trial
It's more than this solution.Get answers and train to solve all your tech problems - anytime, anywhere.Try it for free Edge Out The Competitionfor your dream job with proven skills and certifications.Get started today Stand Outas the employee with proven skills.Start learning today for free Move Your Career Forwardwith certification training in the latest technologies.Start your trial today
Software Firewalls

From novice to tech pro — start learning today.