LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 11-20-2015, 09:09 AM   #1
gubak
Member
 
Registered: Jul 2004
Posts: 332

Rep: Reputation: 30
Proftpd TLS configuration


Hi everyone,



I just configured proftpd (v 1.3.5) in TLS mode. I oened port 21, 443, 21 on the firewall. The FTP client I use is FileZilla.

When I try to connect and the firewall is on I get error:
"Failed to retrieve directory listing"

But when the firewall is off I can connect without problem.

Can you tell me which ports to open?


Here is the error log:

Quote:
Status: Resolving address of xxx.xxx.com
Status: Connecting to xxx.xxx.xxx.xxx:21...
Status: Connection established, waiting for welcome message...
Status: Initializing TLS...
Status: Verifying certificate...
Status: TLS connection established.
Status: Connected
Status: Retrieving directory listing...
Command: PWD
Response: 257 "/" is the current directory
Command: TYPE I
Response: 200 Type set to I
Command: PASV
Response: 227 Entering Passive Mode .
Command: LIST
Error: Connection timed out after 20 seconds of inactivity
Error: Failed to retrieve directory listing

Thank you very much
 
Old 11-21-2015, 01:51 AM   #2
berndbausch
LQ Addict
 
Registered: Nov 2013
Location: Tokyo
Distribution: Mostly Ubuntu and Centos
Posts: 6,316

Rep: Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002Reputation: 2002
Passive mode requires more configuration on the firewall, as an additional, normally not predictable port is opened. You might want to google ip_conntrack_ftp, the kernel module that enables openeing that port.
 
Old 11-25-2015, 12:38 AM   #3
serverpoint.com
Member
 
Registered: Oct 2015
Posts: 52

Rep: Reputation: 6
It seems you can also define the passive port in the proftpd conf file using directive "PassivePorts ". Refer below link.

http://www.proftpd.org/docs/howto/NAT.html
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
LXer: How to Install Proftpd with TLS on Ubuntu 15.04 LXer Syndicated Linux News 0 07-10-2015 04:51 PM
LXer: How to install ProFTPd with TLS on OpenSuse 13.2 LXer Syndicated Linux News 0 01-16-2015 11:21 AM
Problem with ProFTPD + TLS + NAT SukkoPera Linux - Server 6 05-10-2013 10:29 AM
Proftpd and SSL/TLS mikeheggy Linux - Networking 3 12-19-2008 10:01 AM
Proftpd error 425 after TLS. pdeman2 Linux - Software 7 05-01-2006 08:49 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 08:32 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration