Zywall USG 100 Firewall

I am now setting up one Zywall USG 100 (latest firware applied), and I want to forward port 21 to internal server. I follow the steps from the manual, but it is not working. If I disable the firewall, it is working.

I am attaching the manual/tutorial. I used the steps from page 167 to 170. I cannot copy it here as it document is secured.
Who is Participating?
nociSoftware EngineerCommented:
Ah, firewall: WAN-> DMZ, where your FTP server has an address on the LAN1 port
so firewall should be WAN->LAN1 or you need to move the FTP server to the DMZ port.
nociSoftware EngineerCommented:
Hi port 21 is FTP (i expect that you want to use it as such..)
That not only means that port 21 needs to be forward but also the accompaning ports.
for file transfer. Did you enable the FTP ALG?

So besides a NAT rule
+ Firewall rule to pass on port 21
you also need to enable the ALG/FTP

Instead of using FTP please consider the use of SSH/SCP/SFTP...
that doesn't expose a users password like FTP does. It also makes the FTP transfer more private w.r.t. content. (and at least easier on network resources.).
goliveukAuthor Commented:
Hello noci,

ALG/FTP is enabled.
nociSoftware EngineerCommented:
Ok, can you make a screen shot of the config & post here. public IP addresses can be blurred if needed.
goliveukAuthor Commented:

Here are some screens from the Zywall
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

All Courses

From novice to tech pro — start learning today.