Firewall-1

[FW-1] ftp - Connection closed by remote host

Subject: [FW-1] ftp - Connection closed by remote host
From: Roßmanith, Peter <PRossmanith AT STETTER DOT DE>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Thu, 27 Jul 2006 15:12:59 +0200
 
Hi world,
if i try to establish a FTP connection to out side my network (example: 
ftp.hp.com) i am getting the error message ' Connection close by remote host'.
I try to connect through the Firewall (NG, HFA 13) with hidden Nat.
 
My rule set is like this:
Source: MyNet
Destination: ANY
Service: ftp, http...
Action: Accept
 
My NAT Rule:
Original Packet:
    Source: MyNet
    Destination: ANY
    Service: ANY
 
Translated Packet
    Source: Hidden IP from my Firewall
    Destination: Original
    Service: Original
 
HTTP is workin Fine.
In the Firewall Log i see the accepted FTP connection (WITHOUT A NUMBER FOR THE 
NATING RULE).
After a while i see the Log entry: 'TCP Packet out of State: First Packet isn't 
SYN; tcp_flags: RST'
 
I tried the sk21324 without success.
 
Any idea regarding this problem is welcome.
THANKS 
 
:-)
Peter
 
 
 
 
 

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>