Windows 2003 Firewall & FTP

Windows 2003 Firewall & FTP

Secure Home | Search | About
 Microsoft Applications Security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content add this group's latest topics to your Google content
Subject Author Date
Windows 2003 Firewall & FTP Christos Kritik 12-06-2006
Posted by =?Utf-8?B?Q2hyaXN0b3MgS3JpdGlr on December 6, 2006, 3:31 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Hello.

I am running Windows 2003 Server with IIS FTP up and running. I have enabled
the firewall and defined exceptions for FTP access. Unfortunately it doesn't
seem to work. Though I can login on the FTP server, I get data socket errors
and I cannot get a listing of folders or files. If I disable the (windows)
firewall then everything works fine. Am I missing something? (notice: I
access the FTP server from within the same LAN).

Also, when defining firewall exceptions, is there a way to define a service
with many ports (similar to the default entry File & Printer Sharing) as
opposed to adding separate entries for each port/protocol?

million thanks
christos



Posted by dMn on December 6, 2006, 6:43 pm
If you were  Registered and logged in, you could reply and use other advanced thread options
Christos Kritikos wrote:
> Hello.
>
> I am running Windows 2003 Server with IIS FTP up and running. I have enabled
> the firewall and defined exceptions for FTP access. Unfortunately it doesn't
> seem to work. Though I can login on the FTP server, I get data socket errors
> and I cannot get a listing of folders or files. If I disable the (windows)
> firewall then everything works fine. Am I missing something? (notice: I
> access the FTP server from within the same LAN).
>
> Also, when defining firewall exceptions, is there a way to define a service
> with many ports (similar to the default entry File & Printer Sharing) as
> opposed to adding separate entries for each port/protocol?
>
> million thanks
> christos
>
>
FTP Uses different data ports for data and command channels. You are
having problems getting the data ports established. For a better
discussion of the ftp protocol I found these references:
http://www.ncftp.com/ncftpd/doc/misc/ftp_and_firewalls.html
http://support.microsoft.com/kb/283679

Check out the pfirewall.log to figure out what is being blocked. If
your client is specifying a PASV connection then the ports that the
server responds with will need to be open as well.

Also, look at the following reference from Microsoft on how the Windows
Firewall works:
http://technet2.microsoft.com/WindowsServer/en/library/3ccb6af5-d960-4a8d-b12b-70692dc47bf41033.mspx?mfr=true

One thing that seems to be necessary is that you may need to make sure
that the application layer gateway service is running on the server.

Good Luck,
dMn

Similar ThreadsPosted
Windows 2003 -Configure Firewall- September 9, 2005, 4:53 am
Editing Windows firewall ruleset for 2003 Std ? August 18, 2005, 11:41 am
Windows 2003 Firewall intermittently blocks VPN October 19, 2005, 1:06 am
Windows 2003 server disaster re: firewall and RRA December 8, 2006, 8:24 am
Enabling windows firewall on 2003 server remotely December 27, 2005, 3:39 pm
Windows 2003 NIC Firewall Settings - How to add port ranges May 30, 2008, 6:44 am
Windows 2003 firewall - limiting the range of dynamic RPC ports February 17, 2006, 4:04 am
Windows Update fails on Windows 2003 server June 23, 2005, 7:27 pm
Windows 2003/Windows XP security question November 18, 2006, 12:34 pm
Trust between Windows 2003 and Windows NT July 12, 2005, 12:52 am

The site map in XML format XML site map

Contact Us | Privacy Policy