Tech Support > Microsoft Windows > Networking > Ftp clients with public IP blocked in winxppro xpsp2(windows buid-in firewall)
Ftp clients with public IP blocked in winxppro xpsp2(windows buid-in firewall)
Posted by fufu on October 11th, 2005


Hi
Neither iexplorer, nor comman line ftp, not even "telnet ftpserwer 21"
working. That's not active or passive mode problem cause initial SYN packet
is sent(like netstat shows) but doesn't go out on wire(etherreal sniffer on
gateway). There's default rules set in windows built in firewall. When i
turn off windows build-in firewall it works.I've noticed that when i change
ip to private, connection passes fine, it's not blocked(ethereal shows SYN
from my ip)
So. It seems to be a bug in windows firewall. Got all the updates and still
nothing.
regards


Posted by Philip Ashley on October 11th, 2005


i think you need an ftp program that limits the range of ephemeral ports
and open those on the firewall in addition to the regular ones , 20 and
21. Filezilla for example has that option and I limit it to about 15
consecutive port numbers.

hth

philip ashley


"fufu" <fufus@poczta.fm> wrote in message
news:e38lHMnzFHA.3720@TK2MSFTNGP14.phx.gbl...
> Hi
> Neither iexplorer, nor comman line ftp, not even "telnet ftpserwer 21"
> working. That's not active or passive mode problem cause initial SYN
> packet is sent(like netstat shows) but doesn't go out on
> wire(etherreal sniffer on gateway). There's default rules set in
> windows built in firewall. When i turn off windows build-in firewall
> it works.I've noticed that when i change ip to private, connection
> passes fine, it's not blocked(ethereal shows SYN from my ip)
> So. It seems to be a bug in windows firewall. Got all the updates and
> still nothing.
> regards
>
>