Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
Geom
New Contributor III

FTP Directory listing issue

We recently implemented a 3016B (running latest 4.1 firmware) in place of a really old Pix525. So far so good, except one odd issue. I have seen reports from users saying they sometimes can not list specific directories via FTP after they login. Now I know what you are thinking.. the data connection is getting blocked. However other clients including myself can connect with both Active and Passive mode FTP and read the same directories. We have confirmed that it is not a permissions issue and this just cropped up when we cut over from the Pix. Any ideas? Thanks, Geoff
4 REPLIES 4
Anonymous3
New Contributor

I have the same issue....
Fortigate 310B - FortiOS v4.00, Build 0324, 2011-05-20 (MR2 Patch 7)
Fortigate 310B - FortiOS v4.00, Build 0324, 2011-05-20 (MR2 Patch 7)
Robert_Cerny
New Contributor II

Hello, it' s still blocking issue IMHO. Set FTP passive range of the FTP server to some interval and open the same interval on the FG unit. To test that it' s blocking issue simple open all to all and call your customer to test it.
FG-100C FG-100A FW-50B FG-60C
FG-100C FG-100A FW-50B FG-60C
Geom
New Contributor III

The ftp session helper/ protocol recognition should be handling the data channel for passive or active mode connections and there should be no reason to open more ports. Also, I have to allow both Passive and Active connections and can not limit to only Passive, so your solution (even if it worked) won' t resolve the problem.
Geom
New Contributor III

@Robert Cerny - Another point is that I would see the blocked connections you refer to in the traffic log, and so far there is no evidence of that.
Announcements

Select Forum Responses to become Knowledge Articles!

Select the “Nominate to Knowledge Base” button to recommend a forum post to become a knowledge article.

Labels
Top Kudoed Authors