• 0

FTP server with SSL


Question

Friend of mine is trying to setup a FTP server with SSL encryption. He's using Serv-U FTP server and seems to have everything setup properly for SSL implicit. I connect to it with any client; Filezilla, FTP voyager, FlashFXP.....setup for SSL implicit and passive transfer disabled and I cant get a dir listing. The certificate comes through and it connects...but fail on listing the dir. Any idea what could be wrong?

Link to comment
https://www.neowin.net/forum/topic/148606-ftp-server-with-ssl/
Share on other sites

3 answers to this question

Recommended Posts

  • 0

Ok...

He's setup behind router. Has FTP server set to port 990 and has that port opened through firewall.

I am behind a router but have my PC set to DMZ so i'm not behind NAT. My connection settings are typical. FTP server IP...port 990....SSL Implicit....user/pass....passivetransfer disabled. This is an excerpt from my logfile:

 FileZilla started (03/15/2004 03:08:05)
Status:	Connecting to ************:990 ...
Status:	Connected with ************:990, negotiating SSL connection...
Status:	SSL connection established. Waiting for welcome message...
Response:	220 Serv-U FTP Server v4.0 for WinSock ready...
Command:	USER ***
Response:	331 User name okay, need password.
Command:	PASS ******
Response:	230 User logged in, proceed.
Status:	Connected
Status:	Retrieving directory listing...
Command:	PWD
Response:	257 "/" is current directory.
Command:	PORT 192,168,0,100,15,116
Response:	200 PORT Command successful.
Command:	TYPE A
Response:	200 Type set to A
Command:	LIST
Response:	150 Opening ASCII mode data connection for /bin/ls.
Response:	426 Data connection closed, transfer aborted.
Error:	Could not retrieve directory listing
Response:	257 "/" is current directory.
Response:	200 Type set to A.
Status:	Disconnected from server

  • 0

enable pasv mode

your friend might also need to map data range ports beside control connection port (in this case 990)

or

i don't know exact steps in FileZilla, but there is gotta be an option to specify your internet ip, becuase right now your client is sending PORT 192,168,0,100,15,116 which is as you know, your internal ip

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.