make sure ftp passive is set to on. You may also want to add a rule such as
the following:

1) any  any   ident REJECT   do not log..

This will reject idents and speed up mail and ftp (where servers attempt to
identify remote connections.

Thomas

-----Original Message-----
From: sward [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, June 07, 2000 11:04 AM
To: 'Firewall-1 Mailing list'
Subject: [FW1] Strange FTP behaviour



can anyone help with a strange behaviour trying to connect to our web
server. we have a a web server on a dmz which we want to ftp to from an
internal network
 
the internal netork is 192.168.1.0 and the dmz 192.168.2.0 we can ftp out to
the rest of the world ok so we allowed ftp protocols to the dmz the same as
external.
 
the symptons are it connects but cannot log in. it just seems to hang. HTTP
works fine so it's not a routing issue
 
we put a workstation  on the dmz subnet and  it works perfectly so it's
doesn't appear to be the server fault but the firewall. 
 
any ideas??
 
Stuart Ward

Technical Implementation and Support Executive

[EMAIL PROTECTED]

        01527 592880 fax 01527 592881

        This message is intended only for the use of the person(s) ("the
intended recipient(s)") to whom it is addressed.

        It may contain information which is privileged and confidential
within the meaning of applicable law.

        If you are not the intended recipient, please contact the sender as
soon as possible.

        The views expressed in this communication may not necessarily be the
views held by PharMed Limited.

         



============================================================================
====
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
============================================================================
====


================================================================================
     To unsubscribe from this mailing list, please see the instructions at
               http://www.checkpoint.com/services/mailing.html
================================================================================

Reply via email to