LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 09-29-2013, 03:29 PM   #1
ccc
Member
 
Registered: Oct 2002
Posts: 100

Rep: Reputation: 0
open the port range for FTP passive transfer


hi

Which TCP or UDP ports do I need to open for FTP Server behind firewall (Passive Mode)?

On the NAS FTP server I have these ports enabled:

Port: 21
Passive ports: 55536-56559

I hope there are TCP ports and no any UDP ports needed for FTP passive mode.

Last edited by ccc; 09-29-2013 at 04:53 PM.
 
Old 09-30-2013, 02:38 AM   #2
acid_kewpie
Moderator
 
Registered: Jun 2001
Location: UK
Distribution: Gentoo, RHEL, Fedora, Centos
Posts: 43,417

Rep: Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985Reputation: 1985
they certainly all TCP though, if that's all you needed to know.

If your firewall supports FTP connection tracking though, you should be fine only with the port 21 connectivity as it will may automatically pick out the other ports from the control data.
 
Old 09-30-2013, 01:16 PM   #3
baldy3105
Member
 
Registered: Jan 2003
Location: Cambridgeshire, UK
Distribution: Mint (Desktop), Debian (Server)
Posts: 891

Rep: Reputation: 184Reputation: 184
You need to open the same range on the firewall. Passive mode passes the listening port number to the client up the Control Session on port 21 so that the client opens a second connection in to the server on the given listening port. There is no point in the server opening a port, telling the client to connect to it, only for the firewall to block it.

FTP only uses TCP, so you need to open TCP ports 55536-56559.

*edit*

Quote:
If your firewall supports FTP connection tracking though, you should be fine only with the port 21
This also! Sounded like I was contradicting this, but I just didn't read it properly :-)

Last edited by baldy3105; 09-30-2013 at 01:21 PM.
 
1 members found this post helpful.
Old 10-01-2013, 04:03 PM   #4
ccc
Member
 
Registered: Oct 2002
Posts: 100

Original Poster
Rep: Reputation: 0
THX!
 
  


Reply

Tags
ftp, passive, tcp, udp



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
FTP publishing, need help configuring iptables in passive mode in non-standard port vdeschamps Linux - Security 9 07-30-2011 03:11 AM
[SOLVED] open RPC port range bino25 Linux - Networking 2 01-26-2011 07:56 AM
Open Port Range cobolexpert Linux - Security 5 09-02-2004 08:30 AM
Quanta, FTP passive transfer option? ThirdCrown Linux - Software 0 07-07-2004 11:42 PM
FTP PASSIVE VS PORT Advanced s7gn4dd3 Linux - Networking 2 08-11-2003 01:08 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 02:25 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration