PDA

View Full Version : sp2 firewall: ftp reply packets are being dropped


Jan Wessely
October 7th 04, 01:54 PM
I'm unable to make any outgoing FTP connection while the WinXP SP2
firewall is enabled. I have added my ftp client (filezilla) to the
firewall program exceptions and tried both active and passive transfers.
Same with the builtin system32\ftp.exe.

pfirewall.log says:
2004-10-07 14:12:25 DROP TCP XXX.XXX.XXX.XXX YYY.YYY.YYY.YYY 21 3222 108
FAP 901233620 813002509 5840 - - - RECEIVE

where XXX... is the FTP server's IP
and YYY... is my IP

Only when I disable the winxp firewall everything works fine.
Note that I'm connected to the internet through a linux iptables NAT
computer.

Any help on this?
TIA, jan

Carey Frisch [MVP]
October 7th 04, 02:06 PM
Perhaps the troubleshooting information in this article may help:

You may not be able to open a project when you try to connect to a remote Windows XP
Service Pack 2-based computer by using the AutoCAD FTP service
http://support.microsoft.com/default.aspx?scid=kb;en-us;873185&Product=windowsxpsp2

Here's how to correct the problem after opening Port 21 via the
SP2 firewall Exceptions tab:

1. Open Internet Explorer >Tools > Internet Options > Advanced tab

2. Uncheck the box: "Use passive FTP (for firewall & DSL modem capability)

--
Carey Frisch
Microsoft MVP
Windows XP - Shell/User

Be Smart! Protect Your PC!
http://www.microsoft.com/athome/security/protect/default.aspx

-----------------------------------------------------------------------------

"Jan Wessely" wrote:

| I'm unable to make any outgoing FTP connection while the WinXP SP2
| firewall is enabled. I have added my ftp client (filezilla) to the
| firewall program exceptions and tried both active and passive transfers.
| Same with the builtin system32\ftp.exe.
|
| pfirewall.log says:
| 2004-10-07 14:12:25 DROP TCP XXX.XXX.XXX.XXX YYY.YYY.YYY.YYY 21 3222 108
| FAP 901233620 813002509 5840 - - - RECEIVE
|
| where XXX... is the FTP server's IP
| and YYY... is my IP
|
| Only when I disable the winxp firewall everything works fine.
| Note that I'm connected to the internet through a linux iptables NAT
| computer.
|
| Any help on this?
| TIA, jan

Jan Wessely
October 7th 04, 05:27 PM
Carey Frisch [MVP] wrote:
> Perhaps the troubleshooting information in this article may help:
>
> You may not be able to open a project when you try to connect to a remote Windows XP
> Service Pack 2-based computer by using the AutoCAD FTP service
> http://support.microsoft.com/default.aspx?scid=kb;en-us;873185&Product=windowsxpsp2
hi carey,

thank you for your reply, but...

No this didn't help, because the problem described there is a winxp
firewall running on the SERVER side, my problem is running the firewall
on the CLIENT side.

> Here's how to correct the problem after opening Port 21 via the
> SP2 firewall Exceptions tab:
>
> 1. Open Internet Explorer >Tools > Internet Options > Advanced tab
>
> 2. Uncheck the box: "Use passive FTP (for firewall & DSL modem capability)

As I stated in my prev. posting, I have tried both active and passive
transfers.

I didn't use IE at all, I used filezilla and the command line ftp.exe.
(Tried IE now and it's the same problem as with the other ftp clients
regardless of the active/passive setting)

j

Google