LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Networking
User Name
Password
Linux - Networking This forum is for any issue related to networks or networking.
Routing, network cards, OSI, etc. Anything is fair game.

Notices


Reply
  Search this Thread
Old 08-06-2006, 11:43 PM   #1
crackerB
Member
 
Registered: Aug 2006
Posts: 37

Rep: Reputation: 15
Not allowing incoming ftp through firewall.


Hi, I am using Redhat El4 server as internet Gateway.I have done Natting with Ip-tables. Now, I just want to establish an ftp connection
to a remote server with Public IP.When I tried to do ftp, I was able to
connect to the remote server. But after authentication in the remote server,Connection showing as ,going to passive mode and Freezing.
Any body can help me ,what modifications should i do in the firewall
to allow incoming ftp from my client pc's.
 
Old 08-07-2006, 12:59 AM   #2
billymayday
LQ Guru
 
Registered: Mar 2006
Location: Sydney, Australia
Distribution: Fedora, CentOS, OpenSuse, Slack, Gentoo, Debian, Arch, PCBSD
Posts: 6,678

Rep: Reputation: 122Reputation: 122
Do you have an ESTABLISHED,RELATED rule in your firewall script (I assume you're using iptables). Something like:

$IPTABLES -A INPUT --protocol ALL --match state --state ESTABLISHED,RELATED -j ACCEPT
 
Old 08-07-2006, 01:13 AM   #3
crackerB
Member
 
Registered: Aug 2006
Posts: 37

Original Poster
Rep: Reputation: 15
I have added this rule...
Same error is coming..I am using IP-tables.

Remote system type is UNIX.
Using binary mode to transfer files.
ftp> ls
227 Entering Passive Mode (68,236,176,122,228,130)
 
Old 08-07-2006, 01:25 AM   #4
billymayday
LQ Guru
 
Registered: Mar 2006
Location: Sydney, Australia
Distribution: Fedora, CentOS, OpenSuse, Slack, Gentoo, Debian, Arch, PCBSD
Posts: 6,678

Rep: Reputation: 122Reputation: 122
I don't know the wisdom of this, so your call, but you could try with the firewall down to see if it works - at least would rule firewall issue out.

BUT, before you think about the point above, is port 20 open - I think this is required for active ftp.
 
Old 08-07-2006, 01:38 AM   #5
crackerB
Member
 
Registered: Aug 2006
Posts: 37

Original Poster
Rep: Reputation: 15
Can you please help me to open the port 20.with adding rule..
 
Old 08-07-2006, 01:41 AM   #6
Matir
LQ Guru
 
Registered: Nov 2004
Location: San Jose, CA
Distribution: Debian, Arch
Posts: 8,507

Rep: Reputation: 128Reputation: 128
Is the remote server also behind a firewall? Passive FTP should always work if your OUTPUT policy is 'ACCEPT'.
 
Old 08-07-2006, 01:51 AM   #7
crackerB
Member
 
Registered: Aug 2006
Posts: 37

Original Poster
Rep: Reputation: 15
Thanks..for coming in..
Remote server is using active ftp.is a free BSD Server.
Now I am able to ftp from my clients..But Showing problem
When I used gftp graphics tool..(After connection establised
entering to passive mode..)
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
cannot Allowing Incoming X Connections with xhost + libin88 Linux - Enterprise 1 11-09-2005 03:25 PM
Fedora Linux allowing incoming SSH hwm Linux - Networking 5 09-06-2004 02:50 PM
Allowing ssh ftp through the firewall jmg1894 Linux - Newbie 5 07-08-2004 02:42 PM
Allowing incoming connections only from a spesific country? herc Linux - Security 1 04-12-2004 02:56 AM
Allowing for incoming ssh InsaneBob Linux - Software 11 04-12-2003 01:44 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Networking

All times are GMT -5. The time now is 03:36 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration