[2 days left] What’s wrong with your cloud strategy? Learn why multicloud solutions matter with Nimble Storage.Register Now

x
?
Solved

Zywall USG 100 Firewall

Posted on 2015-02-04
5
Medium Priority
?
197 Views
Last Modified: 2015-02-10
Hello,
I am now setting up one Zywall USG 100 (latest firware applied), and I want to forward port 21 to internal server. I follow the steps from the manual, but it is not working. If I disable the firewall, it is working.

I am attaching the manual/tutorial. I used the steps from page 167 to 170. I cannot copy it here as it document is secured.
ZYWALL-USG-200-2.20.pdf
0
Comment
Question by:goliveuk
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
5 Comments
 
LVL 40

Expert Comment

by:noci
ID: 40591737
Hi port 21 is FTP (i expect that you want to use it as such..)
That not only means that port 21 needs to be forward but also the accompaning ports.
for file transfer. Did you enable the FTP ALG?

So besides a NAT rule
+ Firewall rule to pass on port 21
you also need to enable the ALG/FTP

Instead of using FTP please consider the use of SSH/SCP/SFTP...
that doesn't expose a users password like FTP does. It also makes the FTP transfer more private w.r.t. content. (and at least easier on network resources.).
0
 

Author Comment

by:goliveuk
ID: 40593439
Hello noci,


ALG/FTP is enabled.
0
 
LVL 40

Expert Comment

by:noci
ID: 40595571
Ok, can you make a screen shot of the config & post here. public IP addresses can be blurred if needed.
0
 

Author Comment

by:goliveuk
ID: 40598218
Hello,

Here are some screens from the Zywall
Addresses.png
ALG.png
Firewall.png
nat.png
0
 
LVL 40

Accepted Solution

by:
noci earned 2000 total points
ID: 40599877
Ah, firewall: WAN-> DMZ, where your FTP server has an address on the LAN1 port
so firewall should be WAN->LAN1 or you need to move the FTP server to the DMZ port.
0

Featured Post

Windows Server 2016: All you need to know

Learn about Hyper-V features that increase functionality and usability of Microsoft Windows Server 2016. Also, throughout this eBook, you’ll find some basic PowerShell examples that will help you leverage the scripts in your environments!

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The article explains the protocols and technology which is involved when two computers on different TCP/IP networks communicate with each other. In the diagram, a router is used to segregate two networks. The networks are 192.168.1.0/24 and 192…
In the hope of saving someone else's sanity... About a year ago we bought a Cisco 1921 router with two ADSL/VDSL EHWIC cards to load balance local network traffic over the two broadband lines we have, but we couldn't get the routing to work consi…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
In this brief tutorial Pawel from AdRem Software explains how you can quickly find out which services are running on your network, or what are the IP addresses of servers responsible for each service. Software used is freeware NetCrunch Tools (https…

656 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question