PDA

View Full Version : IIS FTP Server and SP2 Firewall


Strider
December 1st 04, 04:21 PM
I host a shared folder using the FTP Server in Windows XP Pro under the
optional IIS software. Since upgrading to SP2, I can't configure the
firewall correctly to allow clients to get to the resource. I've added
exceptions for ports 20 and 21 and under the advanced tab, I've selected the
FTP Server sevice for both my Network Connection and 1394 Connection
entries.

Once I enable the firewall, ftp clients successfulyy connect to the server,
but the client just sits with a status of "Searching for Items" and never
fully connects. If I turn the firewall off, it works fine.

I have a linksys router and ports 20 and 21 are routeed to my FTP server PC.
I am also testing from a PC on my side of the router. Again works fine on
either side of the router if Windows Firewall is disabled. I also run Norton
Systemworks 2005 which has an Internet worm blocker.

Any ideas on how to get this to work?

Hans-Georg Michna
December 1st 04, 05:26 PM
On Wed, 1 Dec 2004 07:21:09 -0800, "Strider"
> wrote:

>I host a shared folder using the FTP Server in Windows XP Pro under the
>optional IIS software. Since upgrading to SP2, I can't configure the
>firewall correctly to allow clients to get to the resource. I've added
>exceptions for ports 20 and 21 and under the advanced tab, I've selected the
>FTP Server sevice for both my Network Connection and 1394 Connection
>entries.
>
>Once I enable the firewall, ftp clients successfulyy connect to the server,
>but the client just sits with a status of "Searching for Items" and never
>fully connects. If I turn the firewall off, it works fine.
>
>I have a linksys router and ports 20 and 21 are routeed to my FTP server PC.
> I am also testing from a PC on my side of the router. Again works fine on
>either side of the router if Windows Firewall is disabled. I also run Norton
>Systemworks 2005 which has an Internet worm blocker.
>
>Any ideas on how to get this to work?

Strider,

set the problem services (IIS, FTP) to manual start, reboot,
then start the services manually, one by one. When the firewall
offers you to unblock the service, unblock it.

After everything runs, you can set the start parameters back to
what they were.

Hans-Georg

--
No mail, please.

Strider
December 1st 04, 07:45 PM
Tried this for IIS andmin and FTP Publisher but never received any prompts
when they started.

"Hans-Georg Michna" wrote:

> On Wed, 1 Dec 2004 07:21:09 -0800, "Strider"
> > wrote:
>
> >I host a shared folder using the FTP Server in Windows XP Pro under the
> >optional IIS software. Since upgrading to SP2, I can't configure the
> >firewall correctly to allow clients to get to the resource. I've added
> >exceptions for ports 20 and 21 and under the advanced tab, I've selected the
> >FTP Server sevice for both my Network Connection and 1394 Connection
> >entries.
> >
> >Once I enable the firewall, ftp clients successfulyy connect to the server,
> >but the client just sits with a status of "Searching for Items" and never
> >fully connects. If I turn the firewall off, it works fine.
> >
> >I have a linksys router and ports 20 and 21 are routeed to my FTP server PC.
> > I am also testing from a PC on my side of the router. Again works fine on
> >either side of the router if Windows Firewall is disabled. I also run Norton
> >Systemworks 2005 which has an Internet worm blocker.
> >
> >Any ideas on how to get this to work?
>
> Strider,
>
> set the problem services (IIS, FTP) to manual start, reboot,
> then start the services manually, one by one. When the firewall
> offers you to unblock the service, unblock it.
>
> After everything runs, you can set the start parameters back to
> what they were.
>
> Hans-Georg
>
> --
> No mail, please.
>

Hans-Georg Michna
December 2nd 04, 01:01 PM
On Wed, 1 Dec 2004 10:45:03 -0800, "Strider"
> wrote:

>Tried this for IIS andmin and FTP Publisher but never received any prompts
>when they started.

Strider,

oh, sorry! Actually what happened was that I remembered a
Microsoft Knowledge Base article that detailed this method. I
searched for the article, but couldn't find it, so I tried to
reproduce the procedure from memory. Apparently I have forgotten
at least one detail, after all.

I still can't find the article, just looked again. I only found
this:

Port Requirements for the Microsoft Windows Server System
http://support.microsoft.com/?kbid=832017

Hans-Georg

--
No mail, please.

Strider
December 2nd 04, 03:15 PM
Thanks for the efforts. I actually finally figured out the problem myself.
THe exclusions of ports 20 and 21 were causing the issue. This was the first
thing I tried and In then added the FTP Server exclusion. Once I removed the
two port exclusions, it took off.

"Hans-Georg Michna" wrote:

> On Wed, 1 Dec 2004 10:45:03 -0800, "Strider"
> > wrote:
>
> >Tried this for IIS andmin and FTP Publisher but never received any prompts
> >when they started.
>
> Strider,
>
> oh, sorry! Actually what happened was that I remembered a
> Microsoft Knowledge Base article that detailed this method. I
> searched for the article, but couldn't find it, so I tried to
> reproduce the procedure from memory. Apparently I have forgotten
> at least one detail, after all.
>
> I still can't find the article, just looked again. I only found
> this:
>
> Port Requirements for the Microsoft Windows Server System
> http://support.microsoft.com/?kbid=832017
>
> Hans-Georg
>
> --
> No mail, please.
>

Hans-Georg Michna
December 2nd 04, 03:41 PM
On Thu, 2 Dec 2004 06:15:02 -0800, "Strider"
> wrote:

>Thanks for the efforts. I actually finally figured out the problem myself.
>THe exclusions of ports 20 and 21 were causing the issue. This was the first
>thing I tried and In then added the FTP Server exclusion. Once I removed the
>two port exclusions, it took off.

Strider,

thanks for reporting back!

Hans-Georg

--
No mail, please.

Google