このスレッドはクローズされています。記事の閲覧のみとなります。
FTPポート(data:20)の20番について |
|
- æ¥æï¼ 2005/08/28 14:49
- ååï¼ ぽんた
- 現在ルータ経由でLinuxPCのFTPポートの20番が開けなくて困っています。
firewall test サイトで調べてみた結果は下記です。 FTP(data:20):closed FTP(control:21):open
−ーーーーーーーーーーーーーーーーーー------------------------ LinuxPCにコマンド:# nmap 127.0.0.1
結果: Starting nmap 3.81 ( http://www.insecure.org/nmap/ ) at 2005-08-27 12:26 JST Interesting ports on localhost.localdomain (127.0.0.1): (The 1657 ports scanned but not shown below are in state: closed) PORT STATE SERVICE 21/tcp open ftp 22/tcp open ssh 23/tcp open telnet 25/tcp open smtp 111/tcp open rpcbind 631/tcp open ipp
やはり20番ポートがありません。
−ーーーーーーーーーーーーーーーーーー------------------------
コマンド:/usr/sbin/lsof -i:25
結果:
COMMAND PID USER FD TYPE DEVICE SIZE NODE NAME portmap 1391 rpc 3u IPv4 5086 UDP *:sunrpc portmap 1391 rpc 4u IPv4 5090 TCP *:sunrpc (LISTEN) rpc.statd 1410 rpcuser 4u IPv4 5124 UDP *:32768 rpc.statd 1410 rpcuser 5u IPv4 5112 UDP *:738 rpc.statd 1410 rpcuser 6u IPv4 5133 TCP *:32769 (LISTEN) mDNSRespo 1704 nobody 7u IPv4 5588 TCP localhost.localdomain:5335 (LISTEN) mDNSRespo 1704 nobody 8u IPv4 5593 UDP *:5353 cupsd 1719 root 0u IPv4 5752 TCP localhost.localdomain:ipp (LISTEN) cupsd 1719 root 2u IPv4 5753 UDP *:ipp sshd 1767 root 3u IPv6 5780 TCP *:ssh (LISTEN) xinetd 1776 root 5u IPv4 5860 TCP *:telnet (LISTEN) vsftpd 1785 root 3u IPv4 5836 TCP *:ftp (LISTEN) sendmail 1802 root 4u IPv4 5892 TCP localhost.localdomain:smtp (LISTEN)
ーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーーー
どのようにしたら20ポートを開けるようにできるのでしょうか? もし、vsftpd.confのファイルを修正するのであれば、どのように修正すれば いいでしょうか?
外部から自宅FTPサーバに接続しようとしているのですがログイン画面はでるのですが 20ポートがあいていないせいか・・・ログインできません。
自宅内部ではFTP伝送は普通にできます。 ルータのメーカに問い合わせしましたがLinuxPCの問題であるとの回答でした。
プロバイダーにもポートの制限をかけていないかも確かめてみましたが制限はかかっていません。
お分かりになるかたふがいましたらご指導お願いします。
|
Page:
[1]
[2]
[3]
[4]
[5]
|
■ コンテンツ関連情報
Re: FTPポート(data:20)の20番について ( No.11 ) |
|
- æ¥æï¼ 2005/09/02 01:41
- ååï¼ ぽんた
- やはり、同じ結果になります。
内容:エラー内容:サーバが、匿名でのログインを許可しないか、または電子メールの アドレスが受信されませんでした
|
Re: FTPポート(data:20)の20番について ( No.12 ) |
|
- æ¥æï¼ 2005/09/02 14:20
- ååï¼ かっぱ姫
- >listen=YES
をコメントアウトするとどうなりますか?
それでもNGなら vsftpd.confの内容をすべて貼り付けて下さい
|
Re: FTPポート(data:20)の20番について ( No.13 ) |
|
- æ¥æï¼ 2005/09/02 19:06
- ååï¼ ぽんた
- ①
listen=YESをコメントしてもNGでした。
② pasv_enable=Yesとして、FTPサーバに接続すると FTPフォルダエラーというダイヤログのWindowエラー出ます。
③ vsftpd.confの内容を貼り付けます。
下記の状態は自宅内でのFTPが可能なファイル状態です。
1)pasv_enable=Yesを有効にすると内部FFFTP接続不可 2)listen=YESをコメントアウト、pasv_enable=Yesコメントアウトでも 内部FFFTP接続不可 3)pasv_enable=Yesを有効、pasv_enable=Yesをコメントしても内部FFFTP接続不可
vsftpd.confの内容 −−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−
# Example config file /etc/vsftpd/vsftpd.conf # # The default compiled in settings are fairly paranoid. This sample file # loosens things up a bit, to make the ftp daemon more usable. # Please see vsftpd.conf.5 for all compiled in defaults. # # READ THIS: This example file is NOT an exhaustive list of vsftpd options. # Please read the vsftpd.conf.5 manual page to get a full idea of vsftpd's # capabilities. # # Allow anonymous FTP? (Beware - allowed by default if you comment this out). anonymous_enable=NO # # Uncomment this to allow local users to log in. local_enable=YES # # Uncomment this to enable any form of FTP write command. write_enable=YES # # Default umask for local users is 077. You may wish to change this to 022, # if your users expect that (022 is used by most other ftpd's) local_umask=022 # # Uncomment this to allow the anonymous FTP user to upload files. This only # has an effect if the above global write enable is activated. Also, you will # obviously need to create a directory writable by the FTP user. #anon_upload_enable=YES # # Uncomment this if you want the anonymous FTP user to be able to create # new directories. #anon_mkdir_write_enable=YES # # Activate directory messages - messages given to remote users when they # go into a certain directory.
dirmessage_enable=YES # # Activate logging of uploads/downloads. xferlog_enable=YES # # Make sure PORT transfer connections originate from port 20 (ftp-data). connect_from_port_20=YES # # If you want, you can arrange for uploaded anonymous files to be owned by # a different user. Note! Using "root" for uploaded files is not # recommended! #chown_uploads=YES #chown_username=whoever # # You may override where the log file goes if you like. The default is shown # below. xferlog_file=/var/log/vsftpd.log # # If you want, you can have your log file in standard ftpd xferlog format xferlog_std_format=YES # # You may change the default value for timing out an idle session. idle_session_timeout=600 # # You may change the default value for timing out a data connection. data_connection_timeout=60 # # It is recommended that you define on your system a unique user which the # ftp server can use as a totally isolated and unprivileged user. #nopriv_user=ftpsecure # # Enable this and the server will recognise asynchronous ABOR requests. Not # recommended for security (the code is non-trivial). Not enabling it,
# however, may confuse older FTP clients. #async_abor_enable=YES # # By default the server will pretend to allow ASCII mode but in fact ignore # the request. Turn on the below options to have the server actually do ASCII # mangling on files when in ASCII mode. # Beware that turning on ascii_download_enable enables malicious remote parties # to consume your I/O resources, by issuing the command "SIZE /big/file" in # ASCII mode. # These ASCII options are split into upload and download because you may wish # to enable ASCII uploads (to prevent uploaded scripts etc. from breaking), # without the DoS risk of SIZE and ASCII downloads. ASCII mangling should be # on the client anyway.. ascii_upload_enable=YES ascii_download_enable=YES # # You may fully customise the login banner string: ftpd_banner=Welcome to blah FTP service. # # You may specify a file of disallowed anonymous e-mail addresses. Apparently # useful for combatting certain DoS attacks. #deny_email_enable=YES # (default follows) #banned_email_file=/etc/vsftpd/banned_emails # # You may specify an explicit list of local users to chroot() to their home # directory. If chroot_local_user is YES, then this list becomes a list of # users to NOT chroot(). #chroot_list_enable=YES # (default follows) #chroot_list_file=/etc/vsftpd/chroot_list # # You may activate the "-R" option to the builtin ls. This is disabled by # default to avoid remote users being able to cause excessive I/O on large
# sites. However, some broken FTP clients such as "ncftp" and "mirror" assume # the presence of the "-R" option, so there is a strong case for enabling it. ls_recurse_enable=YES
pam_service_name=vsftpd #userlist_enable=YES #enable for standalone mode listen=YES tcp_wrappers=YES
#xferlog_std_format=NO #log_ftp_protocol=YES #pasv_promiscuous=YES #Use_localtime=YES
#2005/08/30 Add-start
#pasv_enable=YES #listen_port=5000 pasv_min_port=5000 pasv_max_port=5005
#2005/08/30 Add-end
−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−−
|
Re: FTPポート(data:20)の20番について ( No.14 ) |
|
- æ¥æï¼ 2005/09/02 20:07
- ååï¼ かっぱ姫
- #vi /etc/hosts.allow の内容と
#vi /etc/hosts.deny の内容を教えて下さい。
|
Re: FTPポート(data:20)の20番について ( No.15 ) |
|
- æ¥æï¼ 2005/09/02 22:01
- ååï¼ ぽんた
- ①hosts.allow の内容です。
# # hosts.allow This file describes the names of the hosts which are # allowed to use the local INET services, as decided # by the '/usr/sbin/tcpd' server. # vsftpd : 192.168.1. 127.0.0.1 ***.***.***.***(グローバルIP)
②hosts.denyの内容です。
# hosts.deny This file describes the names of the hosts which are # *not* allowed to use the local INET services, as decided # by the '/usr/sbin/tcpd' server. # # The portmap line is redundant, but it is left to remind you that # the new secure portmap uses hosts.deny and hosts.allow. In particular # you should know that NFS uses portmap! vsftpd : ALL
|
Page:
[1]
[2]
[3]
[4]
[5]
|
■ その他