Passive FTP instead of active FTP

I have a client that cannot use Active FTP connections because they are limited by interface applications. I have a problem: I have configured Active, but I can’t understand why my passive FTP will only be time-consuming.

I followed this article http://learn.iis.net/page.aspx/309/configuring-ftp-firewall-settings/ and there is still no joy.

The first question is whether to allow the client to use a passive connection? how safe it is, since I would have to have many more ports with a passive connection.

The second question is why should FTP have a timeout with rules to configure it on the firewall?

+3
source share
1 answer

Not very familiar with iis7, but I can help you with some questions.

Passive connection with active ftp. When it is active, this means that the server is communicating with the client, the client selects the port that will be used for data transfer, and then sends it back to the server for use. A passive is used when people are behind a firewall, for example, and this means that the client does not select the port, and the server does this, and the clients connect to it.

In short, if the client does not allow the server to initiate the connection, passive mode is used. More info here .

It does not matter if the connection is passive or active, the security is the same.

, , . , . , , ..

+2

Source: https://habr.com/ru/post/1705326/


All Articles