On Thu, 5 Jul 2007, Sean Donaghey wrote:

I am not trying to connect to splat with FTPS, I am trying to do outbound
FTPS to an internet site, from a computer behind my firewall.  It seems
that the firewall is blocking certain things about the FTPS.  I have gone
through SmartDefense and turned off everything that has to do with FTP,
but it has not fixed it.

ftps is a real pain in the behind when a firewall with NAT is involved. On the one hand you need to follow the ftp control session to open the data port but on the other hand you try to encrypt the very control session one needs to do this right.

Can you see if this happens if you setup static NAT or no NAT at all? There is a bit about this in SecureKnowledge but I always hate to open all high-ports for something like this to work around the self inflicted limitations of the ftps protocol.

Hugo.

PS:
A: Yes.
Q: Are you sure?
A: Because it reverses the logical flow of conversation.
Q: Why is top posting frowned upon?

--
        [EMAIL PROTECTED]       http://hugo.vanderkooij.org/
            This message is using 100% recycled electrons.

        Some men see computers as they are and say "Windows"
        I use computers with Linux and say "Why Windows?"
                (Thanks JFK, for the insight.)

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to