How to make ftp connections to FZ server most secure?
Moderator: Project members
How to make ftp connections to FZ server most secure?
Hello !
As I do not know much about networks, ftp, etc. I would be verythankfull if someone could give me some hints how to make ftp - transfers most secure when using FileZilla server.
Regards,
Fabian
As I do not know much about networks, ftp, etc. I would be verythankfull if someone could give me some hints how to make ftp - transfers most secure when using FileZilla server.
Regards,
Fabian
Hi botg,
Thanks for the advice. So I did this and had these problems :
Status: Connecting to 8.XXX.XX.XX ...
Status: Connected with 8.XXX.XXX.XX . Waiting for welcome message...
Response: 220-FileZilla Server version 0.9.16c beta
Response: 220-written by Tim Kosse (Tim.Kosse@gmx.de)
Response: 220 Please visit http://sourceforge.net/projects/filezilla/
Command: USER xxx
Response: 331 Password required for xxx
Command: PASS ********
Response: 230 Logged on
Command: FEAT
Response: 211-Features:
Response: MDTM
Response: REST STREAM
Response: SIZE
Response: MLST type*;size*;modify*;
Response: UTF8
Response: CLNT
Response: 211 End
Command: CLNT FileZilla
Response: 200 Don't care
Command: OPTS UTF8 ON
Response: 200 UTF8 mode enabled
Command: SYST
Response: 215 UNIX emulated by FileZilla
Status: Connected
Status: Retrieving directory listing...
Command: PWD
Response: 257 "/" is current directory.
Command: TYPE A
Response: 200 Type set to A
Command: PASV
Response: 227 Entering Passive Mode (8,XXX,XXX,XXX,9,43)
Command: LIST
Response: 425 Can't open data connection.
Error: Could not retrieve directory listing
Command: TYPE I
Response: 200 Type set to I
Command: PWD
Response: 257 "/" is current directory.
Command: PWD
Response: 257 "/" is current directory.
Command: TYPE A
Response: 200 Type set to A
Response: 421 No-transfer-time exceeded. Closing control connection.
Error: Disconnected from server
Status: Waiting to retry... (5 retries left)
Status: Connecting to 8.XXX.XXX.XX...
Status: Connected with 8.XXX.XXX.XX. Waiting for welcome message...
Response: 220-FileZilla Server version 0.9.16c beta
Response: 220-written by Tim Kosse (Tim.Kosse@gmx.de)
Response: 220 Please visit http://sourceforge.net/projects/filezilla/
Command: USER fvb
Response: 331 Password required for fvb
Command: PASS ********
Response: 230 Logged on
Command: FEAT
Response: 211-Features:
Response: MDTM
Response: REST STREAM
Response: SIZE
Response: MLST type*;size*;modify*;
Response: UTF8
Response: CLNT
Response: 211 End
Command: CLNT FileZilla
Response: 200 Don't care
Command: OPTS UTF8 ON
Response: 200 UTF8 mode enabled
Command: SYST
Response: 215 UNIX emulated by FileZilla
Status: Connected
Status: Retrieving directory listing...
Command: PWD
Response: 257 "/" is current directory.
Command: TYPE A
Response: 200 Type set to A
Command: PASV
Response: 227 Entering Passive Mode (8,XXX,XXX,XXX,9,48)
Command: LIST
Response: 425 Can't open data connection.
Error: Could not retrieve directory listing
Command: REST 0
Response: 350 Rest supported. Restarting at 0
Command: REST 0
Response: 350 Rest supported. Restarting at 0
Command: TYPE I
Response: 200 Type set to I
Response: 421 No-transfer-time exceeded. Closing control connection.
Error: Disconnected from server
Status: Waiting to retry... (4 retries left)
etc.
As ftp client I use the FileZilla client.
Thank you very much for any help to get this to work - if possible !
By the way, I did not understand what you mean by "remove the general FTP port (21).
Regards,
Fabian
Thanks for the advice. So I did this and had these problems :
Status: Connecting to 8.XXX.XX.XX ...
Status: Connected with 8.XXX.XXX.XX . Waiting for welcome message...
Response: 220-FileZilla Server version 0.9.16c beta
Response: 220-written by Tim Kosse (Tim.Kosse@gmx.de)
Response: 220 Please visit http://sourceforge.net/projects/filezilla/
Command: USER xxx
Response: 331 Password required for xxx
Command: PASS ********
Response: 230 Logged on
Command: FEAT
Response: 211-Features:
Response: MDTM
Response: REST STREAM
Response: SIZE
Response: MLST type*;size*;modify*;
Response: UTF8
Response: CLNT
Response: 211 End
Command: CLNT FileZilla
Response: 200 Don't care
Command: OPTS UTF8 ON
Response: 200 UTF8 mode enabled
Command: SYST
Response: 215 UNIX emulated by FileZilla
Status: Connected
Status: Retrieving directory listing...
Command: PWD
Response: 257 "/" is current directory.
Command: TYPE A
Response: 200 Type set to A
Command: PASV
Response: 227 Entering Passive Mode (8,XXX,XXX,XXX,9,43)
Command: LIST
Response: 425 Can't open data connection.
Error: Could not retrieve directory listing
Command: TYPE I
Response: 200 Type set to I
Command: PWD
Response: 257 "/" is current directory.
Command: PWD
Response: 257 "/" is current directory.
Command: TYPE A
Response: 200 Type set to A
Response: 421 No-transfer-time exceeded. Closing control connection.
Error: Disconnected from server
Status: Waiting to retry... (5 retries left)
Status: Connecting to 8.XXX.XXX.XX...
Status: Connected with 8.XXX.XXX.XX. Waiting for welcome message...
Response: 220-FileZilla Server version 0.9.16c beta
Response: 220-written by Tim Kosse (Tim.Kosse@gmx.de)
Response: 220 Please visit http://sourceforge.net/projects/filezilla/
Command: USER fvb
Response: 331 Password required for fvb
Command: PASS ********
Response: 230 Logged on
Command: FEAT
Response: 211-Features:
Response: MDTM
Response: REST STREAM
Response: SIZE
Response: MLST type*;size*;modify*;
Response: UTF8
Response: CLNT
Response: 211 End
Command: CLNT FileZilla
Response: 200 Don't care
Command: OPTS UTF8 ON
Response: 200 UTF8 mode enabled
Command: SYST
Response: 215 UNIX emulated by FileZilla
Status: Connected
Status: Retrieving directory listing...
Command: PWD
Response: 257 "/" is current directory.
Command: TYPE A
Response: 200 Type set to A
Command: PASV
Response: 227 Entering Passive Mode (8,XXX,XXX,XXX,9,48)
Command: LIST
Response: 425 Can't open data connection.
Error: Could not retrieve directory listing
Command: REST 0
Response: 350 Rest supported. Restarting at 0
Command: REST 0
Response: 350 Rest supported. Restarting at 0
Command: TYPE I
Response: 200 Type set to I
Response: 421 No-transfer-time exceeded. Closing control connection.
Error: Disconnected from server
Status: Waiting to retry... (4 retries left)
etc.
As ftp client I use the FileZilla client.
Thank you very much for any help to get this to work - if possible !
By the way, I did not understand what you mean by "remove the general FTP port (21).
Regards,
Fabian
Do you mean the port edit box in the FZS Interface? If I leave it empty, I get this:botg wrote:Well you are still connecting using normal unencrypted FTP. If you leave the FTP port edit box empty, unencrypted connections won't be possible anymore .
Code: Select all
Failed to create a listen socket on any of the specified ports. Server is not online!
Hello,
finally I got it to work. This is the connection protocoll, could you just have a brief look at it to be sure that the connection is 100% secure now?
Thank you very much!
Regards,
Fabian
SmartFTP v1.5.990.26
Resolving host name "ftp.mydomain.net"
Connecting to 8.8.xxx.xxx Port: 21
Connected to ftp.mydomain.net.
220 ----
AUTH TLS
234 Using authentication type TLS
Connected. Exchanging encryption keys...
Session Cipher: 128 bit RC4
TLS encrypted session established.
PBSZ 0
200 PBSZ=0
USER xxx
331 Password required for xxx
PASS (hidden)
230 Logged on
SYST
215 UNIX emulated by FileZilla
FEAT
211-Features:
MDTM
REST STREAM
SIZE
MLST type*;size*;modify*;
AUTH SSL
AUTH TLS
UTF8
CLNT
211 End
CLNT SmartFTP 1.5.990
200 Don't care
OPTS UTF8 ON
200 UTF8 mode enabled
PWD
257 "/" is current directory.
TYPE I
200 Type set to I
PROT P
200 Protection level set to P
PASV
227 Entering Passive Mode (8,8,xxx,xxx,4,2)
Opening data connection to 8.8.xxx.xxxPort: 1026
MLSD
Connected. Exchanging encryption keys...
150 Connection accepted
Session Cipher: 128 bit RC4
TLS encrypted session established.
374 bytes transferred. (174 bytes/s) (00:00:02)
226 Transfer OK
finally I got it to work. This is the connection protocoll, could you just have a brief look at it to be sure that the connection is 100% secure now?
Thank you very much!
Regards,
Fabian
SmartFTP v1.5.990.26
Resolving host name "ftp.mydomain.net"
Connecting to 8.8.xxx.xxx Port: 21
Connected to ftp.mydomain.net.
220 ----
AUTH TLS
234 Using authentication type TLS
Connected. Exchanging encryption keys...
Session Cipher: 128 bit RC4
TLS encrypted session established.
PBSZ 0
200 PBSZ=0
USER xxx
331 Password required for xxx
PASS (hidden)
230 Logged on
SYST
215 UNIX emulated by FileZilla
FEAT
211-Features:
MDTM
REST STREAM
SIZE
MLST type*;size*;modify*;
AUTH SSL
AUTH TLS
UTF8
CLNT
211 End
CLNT SmartFTP 1.5.990
200 Don't care
OPTS UTF8 ON
200 UTF8 mode enabled
PWD
257 "/" is current directory.
TYPE I
200 Type set to I
PROT P
200 Protection level set to P
PASV
227 Entering Passive Mode (8,8,xxx,xxx,4,2)
Opening data connection to 8.8.xxx.xxxPort: 1026
MLSD
Connected. Exchanging encryption keys...
150 Connection accepted
Session Cipher: 128 bit RC4
TLS encrypted session established.
374 bytes transferred. (174 bytes/s) (00:00:02)
226 Transfer OK
Code: Select all
AUTH TLS
234 Using authentication type TLS
Connected. Exchanging encryption keys...
Session Cipher: 128 bit RC4
TLS encrypted session established.
PBSZ 0
200 PBSZ=0
Code: Select all
PROT P
200 Protection level set to P
Code: Select all
MLSD
Connected. Exchanging encryption keys...
150 Connection accepted
Session Cipher: 128 bit RC4
TLS encrypted session established.
374 bytes transferred. (174 bytes/s) (00:00:02)
226 Transfer OK
That should work. If you get the directory listing, all is fine. Test a data transfer as well!
boco