Page 1 of 1

425 Can't open data connection for transfer of

Posted: 2020-12-02 19:35
by mlindsey955
I know there is a ton on this subject but those are all on setups and nothing being able to connect... I have an odd situation where I have been up and running for years and have tons of clients connecting daily and dropping files with no issue... However i have just 1 new person that i setup that is getting this error and I cannot for the life of me figure out why... I am seeing people connect and drop files but this 1 person/IP is connecting but getting this error upon dropping the file. Firewall/etc all setup correctly (otherwise the other IP's wouldnt be working).... Is there anything you all can think of?

Below is what I am seeing via the console. I hid the IP's... But as you can see WIDATAWBG is the user having the error... You can also see another user QUALITY connect around the same time perfectly fine. Is it a port issue on the user end?

(098934) 12/2/2020 9:03:31 AM - (not logged in) (xxx.xxx.xxx.xxx)> Connected on port 21, sending welcome message...
(098934) 12/2/2020 9:03:31 AM - (not logged in) (xxx.xxx.xxx.xxx)> 220-FileZilla Server 0.9.60 beta
(098934) 12/2/2020 9:03:31 AM - (not logged in) (xxx.xxx.xxx.xxx)> 220-written by Tim Kosse (tim.kosse@filezilla-project.org)
(098934) 12/2/2020 9:03:31 AM - (not logged in) (xxx.xxx.xxx.xxx)> 220 Please visit https://filezilla-project.org/
(098934) 12/2/2020 9:03:31 AM - (not logged in) (xxx.xxx.xxx.xxx)> USER WIDATAWBG
(098934) 12/2/2020 9:03:31 AM - (not logged in) (xxx.xxx.xxx.xxx)> 331 Password required for widatawbg
(098934) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> PASS ******
(098934) 12/2/2020 9:03:32 AM - widatawbg (xxx.xxx.xxx.xxx)> 230 Logged on
(098934) 12/2/2020 9:03:32 AM - widatawbg (xxx.xxx.xxx.xxx)> TYPE I
(098934) 12/2/2020 9:03:32 AM - widatawbg (xxx.xxx.xxx.xxx)> 200 Type set to I
(098934) 12/2/2020 9:03:32 AM - widatawbg (xxx.xxx.xxx.xxx)> PORT 10,1,10,6,4,4
(098934) 12/2/2020 9:03:32 AM - widatawbg (xxx.xxx.xxx.xxx)> 200 Port command successful
(098934) 12/2/2020 9:03:32 AM - widatawbg (xxx.xxx.xxx.xxx)> STOR /211_813.tmp
(098934) 12/2/2020 9:03:32 AM - widatawbg (xxx.xxx.xxx.xxx)> 150 Opening data channel for file upload to server of "/211_813.tmp"
(098935) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> Connected on port 21, sending welcome message...
(098935) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> 220-FileZilla Server 0.9.60 beta
(098935) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> 220-written by Tim Kosse (tim.kosse@filezilla-project.org)
(098935) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> 220 Please visit https://filezilla-project.org/
(098935) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> USER QUALITY
(098935) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> 331 Password required for quality
(098935) 12/2/2020 9:03:32 AM - (not logged in) (xxx.xxx.xxx.xxx)> PASS ***********
(098935) 12/2/2020 9:03:32 AM - quality (xxx.xxx.xxx.xxx)> 230 Logged on
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> OPTS utf8 on
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 202 UTF8 mode is always enabled. No need to send this command.
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> PWD
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 257 "/" is current directory.
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> CWD /EDI214/
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 250 CWD successful. "/EDI214" is current directory.
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> TYPE I
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 200 Type set to I
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> PASV
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 227 Entering Passive Mode (10,158,140,50,196,246)
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> STOR 214QUCA.29744.12022020.txt
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 150 Opening data channel for file upload to server of "/EDI214/214QUCA.29744.12022020.txt"
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 226 Successfully transferred "/EDI214/214QUCA.29744.12022020.txt"
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> QUIT
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> 221 Goodbye
(098935) 12/2/2020 9:03:33 AM - quality (xxx.xxx.xxx.xxx)> disconnected.
(098934) 12/2/2020 9:03:42 AM - widatawbg (xxx.xxx.xxx.xxx)> 425 Can't open data connection for transfer of "/211_813.tmp"

Re: 425 Can't open data connection for transfer of

Posted: 2020-12-02 20:14
by mlindsey955
Any reason why the client wouldn't be entering passive mode?

Re: 425 Can't open data connection for transfer of

Posted: 2020-12-02 20:18
by boco
The person getting the error has set the FTP client to Active mode (PORT). Active mode using PORT requires correct and full setup of the FTP client, according to the Active mode part of the Network Configuration Guide. The client is not set up for Active mode, as it sends a private, non-routable IP in the PORT command (10.1.10.6 is only valid inside a LAN).

Alternatively, and much more easy, tell that person to set the FTP client to Passive mode (PASV), like the other clients do, too.

Re: 425 Can't open data connection for transfer of

Posted: 2020-12-02 20:21
by boco
mlindsey955 wrote:
2020-12-02 20:14
Any reason why the client wouldn't be entering passive mode?
Would it be possible they are using the internal ftp.exe of Windows? That very ancient client is stuck in the 80's and does not support Passive mode at all. Additionally, it cannot be configured. Thus, it is basically unusable, these days.

Re: 425 Can't open data connection for transfer of

Posted: 2020-12-02 20:33
by mlindsey955
Per the company no it does not use internal FTP of windows.

Re: 425 Can't open data connection for transfer of

Posted: 2020-12-03 08:56
by botg
As the server is also behind a NAT router, I suspect it's not configured correctly either for passive mode. Could you please test your server on https://ftptest.net/ ?