Hey Fabiano, What you are describing is called "active ftp". The ftp is a TCP-only protocol and uses a data port(20) and a command or control port (21). It depends on 2 modes, active and passive ftp, and is a very unusual protocol, because the data port is not always 20.
For you to understand that, I suggest reading about it on http://slacksite.com/other/ftp.html that is a very good explanation of whats happening. If you got any further questions in realation to your firewall, feel free to contact me. Greetings, Christoph Blank * Fabiano Pacheco wrote on 20 May 2002: > Hi All, > � > Does anybody knows why when I try to FTP anywere, loggin on my FW, I saw a packet >coming from port 20 (remote) to a randon port on my FW.... > � > But there is anything very strange occurring.....I can authenticate on FTP >Server....but when I try to get a list (ls or dir or something else.....) simply the >server give me a packet on a random port....so my FW blocks!!! > � > Is it right or not? If right, what I have to do on my fw to permit this packet >traffic? > � > Thanx, > � > Fabiano Pacheco > -- Christoph Blank, [EMAIL PROTECTED] GPG Key Fingerprint: D49E B169 C3BF 3135 0129 9F9E DB93 7570 43AF 4FCE http://www.unused.at | what do you expect?
msg06840/pgp00000.pgp
Description: PGP signature
