hosted by liquidweb


Go Back   Web Hosting Talk : Web Hosting Main Forums : Hosting Security and Technology : ftp-authssl Ports
Reply

Hosting Security and Technology Configuring and optimizing web hosting servers and operating systems, developing administration scripts, building servers, protecting against hackers, and general security (SSL certificates, etc.)
Forum Jump

ftp-authssl Ports

Reply Post New Thread In Hosting Security and Technology Subscription
 
Send news tip View All Posts Thread Tools Search this Thread Display Modes
  #1  
Old 01-15-2005, 01:35 PM
Mysteerie Mysteerie is offline
Web Hosting Evangelist
 
Join Date: Mar 2004
Posts: 458

ftp-authssl Ports


When I use ftp-authssl to connect through FTP. With my APF firewall off, it works properly, but with it on, it doens't display the folders.

What ports are required (beside 21) to allow SSL FTP through APF? Thank you.

I did a search and did find a few post, but the guy wasn't totally trustable, since I found a post saying those ports were wrong. So just posting a message in case anyone uses FTP SSL and what ports they have open.

Reply With Quote


Sponsored Links
  #2  
Old 01-15-2005, 04:03 PM
error404 error404 is offline
Web Hosting Master
 
Join Date: Dec 2004
Location: Canada
Posts: 1,076
Only port 21, if you're using active mode on the client. Otherwise you'll need to open a portrange and configure your FTP server to use it for data connections.

There really is no difference between the two, other than the fact that you can encrypt one. They work the same way, and use the same ports etc.

__________________
>> Keenan Tims
█▓▒░ I am currently looking for full-time work in the Vancouver area. Resume ░▒▓█
http://www.gotroot.ca/ | ktims@gotroot.ca | skype: keenan.tims

Reply With Quote
  #3  
Old 01-15-2005, 05:22 PM
bitserve bitserve is offline
Web Hosting Master
 
Join Date: Nov 2001
Location: Ann Arbor, MI
Posts: 2,978
You need to allow the data connection back from the server from tcp source port 20 back to the tcp port that the client originated the control connectin from. You didn't say if the firewall was on the client or the server. But you might try passive ftp mode.

__________________
-Mark Adams
www.bitserve.com - Secure Michigan web hosting for your business.
Only host still offering a full money back uptime guarantee and prorated refunds.
Offering advanced server management and security incident response!

Reply With Quote
Sponsored Links
  #4  
Old 01-17-2005, 03:51 AM
Mysteerie Mysteerie is offline
Web Hosting Evangelist
 
Join Date: Mar 2004
Posts: 458
Sorry, the firewall is on the server. I do have a personal firewall, though I have opened ports 20 and 21 on my personal firewall.

Also when I turn "OFF" the firewall on the server, SSL through FTP works properly on my personal computer.

I'm currently tried using passive and active mode through FTP, it didn't make a differnce. Currently I have it on active mode.

Reply With Quote
  #5  
Old 01-17-2005, 03:53 AM
Mysteerie Mysteerie is offline
Web Hosting Evangelist
 
Join Date: Mar 2004
Posts: 458
Oh yea I have ports 20 and 21 open in APF (my firewall on the server).

Reply With Quote
  #6  
Old 01-17-2005, 03:59 AM
error404 error404 is offline
Web Hosting Master
 
Join Date: Dec 2004
Location: Canada
Posts: 1,076
I suggest you open a block of ports on your server and direct your FTP daemon to use them as data ports.

__________________
>> Keenan Tims
█▓▒░ I am currently looking for full-time work in the Vancouver area. Resume ░▒▓█
http://www.gotroot.ca/ | ktims@gotroot.ca | skype: keenan.tims

Reply With Quote
  #7  
Old 01-17-2005, 12:45 PM
bitserve bitserve is offline
Web Hosting Master
 
Join Date: Nov 2001
Location: Ann Arbor, MI
Posts: 2,978
Quote:
Originally posted by bitserve
[B]You need to allow the data connection back from the server from tcp source port 20 back to the tcp port that the client originated the control connection from.
More than likely, need to allow outgoing traffic from tcp source port 20 to a random high numbered tcp port. To do this more controlled, you should use state. Good luck.

__________________
-Mark Adams
www.bitserve.com - Secure Michigan web hosting for your business.
Only host still offering a full money back uptime guarantee and prorated refunds.
Offering advanced server management and security incident response!

Reply With Quote
Reply

Related posts from TheWhir.com
Title Type Date Posted
Dome9 Study Finds Cloud Vulnerable Without Secure Cloud Ports and Firewalls Web Hosting News 2011-11-02 15:37:19
Akamai Report Names Taiwan Number-One Source of Attack Traffic Web Hosting News 2011-10-28 18:33:23
PCI Compliance is About to Get Real, with Benny Crampton of LiquidWeb Web Hosting News 2011-10-12 22:31:27
Global Crossing Deploys New Dedicated Internet Access Ports for Web Host SoftLayer Web Hosting News 2011-08-30 16:49:14
Cloud Security Firm Dome9 Partners with WordPress, CloudFlare Web Hosting News 2011-08-10 18:28:04


Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes
Postbit Selector

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off

Forum Jump
Login:
Log in with your username and password
Username:
Password:



Forgot Password?
Advertisement:
Web Hosting News:



 

X

Welcome to WebHostingTalk.com

Create your username to jump into the discussion!

WebHostingTalk.com is the largest, most influentual web hosting community on the Internet. Join us by filling in the form below.


(4 digit year)

Already a member?