RadarURL
Skip to content
조회 수 739 추천 수 0 댓글 0
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄
?

단축키

Prev이전 문서

Next다음 문서

크게 작게 위로 아래로 댓글로 가기 인쇄

XpressEngine
How to Set a Passive Port Range in Serv-U FTP Server  -  KB Article #2100

Related Articles -- 1044, 2091


As you probably already know, FTP uses multiple connections on multiple portsto perform file transfers.

Many firewalls "understand" plan text FTP and can open/close the appropriate ports dynamically if you specifically configure "FTP" (rather than "TCP port 21") on firewall rules. However, when FTPSis used, the control channel the firewall would usually read is encrypted, so firewall technicians find they need to open up ranges of high inbound TCP ports to get FTPS to work in passivemode. (We do not recommend the use of active modeFTPS transfers; fortunately most clients that can do FTPS select passive mode transfers by default.)

To avoid ridiculous ranges (e.g., "allow TCP from all to ports 1024-65535"), specific ranges of inbound passive ports can be configured on both your FTP server andyour firewall. These instructions show how to configure a passive FTP port range on Serv-U. (Related instructions show how torequire the use of passive mode transfersin Serv-U.)

Instructions

1.Open your Serv-U Management Console and navigate to the "Server Settings" tab under "Server Limits & Settings". (Do not go to your Domain-level Limits & Settings.)

2.Scroll down until you see the "Network Settings" panel. Fill in a value for the "PASV Port Range". (We recommend starting with 50000-50009; you can use a narrower port range if you never hit simultaneous transfers; use a wider port range if you support more simultaneoustransfers.)


3.Click the "Save" button in the "Network Settings" panel.
4.To test, connect to Serv-U using an FTP clientthat is set up to use passive mode. Connect to the server from outside your firewall, attempt several directory listings and transfers, and make sure passive transfers work.


Related Articles

•Serv-U Firewall Rules
•Requiring Passive Transfers


Additional Notes

•Firewall rules that prohibit all outbound connections from Serv-U should also be implemented; no outbound connections are needed when passive mode FTP transfers are performed.
•These instructions also apply when Serv-U Gatewayis used to avoid deploying Serv-U in a DMZ segment.
•Alsoremember to require the use of passive modeon Serv-U.



출처 : http://www.serv-u.com/kb/2100/How-to-Set-a-Passive-Port-Range-in-ServU-FTP-Server


?

List of Articles
번호 제목 글쓴이 날짜 조회 수
76 숨겨진 진주, ‘공개 네트워크 툴’을 찾아라 JaeSoo 2004.07.19 893
75 Modelling and Simulation Resources on the Internet JaeSoo 2005.05.07 5065
74 페이지로딩속도가 느릴 경우 (3초이상) JaeSoo 2005.12.28 3973
73 메일 발송시 리턴메일 메시지 JaeSoo 2007.06.05 3621
72 smtp를 이용하여 mail 보내기 (pear 사용) JaeSoo 2007.06.07 3938
71 초고속선도망(KOREN) 사업 보고서 JaeSoo 2007.12.06 4543
70 `IPv6` 9월 부터 시범서비스 JaeSoo 2007.12.07 3623
69 Ten things Your IT department won't tell you (IT 부서가 당신에게 말해주지 않는 10가지) JaeSoo 2007.12.28 4144
68 자가전기통신설비(자가망)관련 법령 JaeSoo 2007.12.28 4941
67 정보통신기반보호법(요약) 및 검토 JaeSoo 2007.12.28 5066
66 조기경보시스템(1)-조기경보 시스템의 개요 JaeSoo 2008.01.28 3802
65 조기경보시스템(2)-조기경보 시스템의 기술 동향 JaeSoo 2008.01.28 3625
64 조기경보시스템(3)-조기경보 시스템(Early Warning System)의 국내외 구축·운영 사례 JaeSoo 2008.01.28 3817
63 초고속 정보통신 인증제, 홈네트워크 인증제 JaeSoo 2008.02.25 3748
62 무료 PC 원격제어 JaeSoo 2008.07.02 4326
61 인터넷 친구를 만들거나 비지니스 인맥을 만드는 웹어플리케이션, SNS JaeSoo 2008.07.23 3626
60 Openet JaeSoo 2009.09.29 3746
59 윈도우즈에서 Squid 프락시 서버 설치 JaeSoo 2009.10.05 3904
58 네트워크 충돌검색 [nbtstat]명령어 JaeSoo 2009.10.05 4833
57 듀얼 WAN 사용 시 대역폭 문제 JaeSoo 2010.01.22 6235
Board Pagination Prev 1 2 3 4 Next
/ 4

PageViews   Today : 11856 Yesterday : 5037 Total : 21967908  /  Counter Status   Today : 11480 Yesterday : 4602 Total : 1194203

Edited by JAESOO

sketchbook5, 스케치북5

sketchbook5, 스케치북5

나눔글꼴 설치 안내


이 PC에는 나눔글꼴이 설치되어 있지 않습니다.

이 사이트를 나눔글꼴로 보기 위해서는
나눔글꼴을 설치해야 합니다.

설치 취소