View Single Post
  #1 (permalink)  
Old 2006-04-26
ChrisA ChrisA is offline
Senior Member
 
Join Date: 2006-02-18
Posts: 103
Rep Power: 3
ChrisA has an average reputation (10+)
Default FTP Nat - Can't build data connection: Connection timed out

We're running CheckPoint NGX HFA02. We have a server that external folks connect to over non-standard FTP port 10021. All works fine. All sessions come through a VPN connection (SecureClient or site-to-site VPN).

One site cannot do 10021, for whatever reason, and asked that we perform nat so that they can do straight FTP and we xlate the service from FTP to 10021 at the firewall. It works, and the site can log in to the server, but any command (dir, ls, ..) gives "425 Can't build data connection: Connection timed out". The site tried passive mode but that didn't work either.

Any ideas?
Reply With Quote