cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1053
Views
0
Helpful
2
Replies

VPN and FTP: Problems

7sboals
Level 1
Level 1

I have a site to site VPN setup with Cisco/Altiga VPN concentrators and I'm having issues with FTP through the VPN. Unix boxes work just fine, but NT fails. I know unix uses passive ftp and nt uses active, but that really shouldn't matter here. Any ideas???????

2 Replies 2

dade-mchugh
Level 1
Level 1

Are you using any filtering mechanisms? as in access list or firewall ip filtering?

if so then I think it could be that NT "is" using active FTP!, because in active mode, when the remote (client) end wants to send a file it tries to open a TCP connection to ports above 1024 on the local (server) machine instead of ftp-data (20). This means you can't restrict these TCP connections without breaking active FTP.

No filters. Traffic is open to all. The only thing i can think of is that maybe the VPN concentrator, being the security conscious entity it is, drops packets because the ports change. Just a guess.