FTP Connection Issue with RUT241

Hello, good morning.

I’m trying to establish an FTP connection and I’m using a Teltonika RUT241 router. It seems like the router is blocking the connection.

We’ve configured a port forwarding rule from the WAN interface to a local IP on port 21, but we can’t get it to work.

Additionally, I’ve tried going into Firewall → Settings and set all input rules to “accept,” but it still doesn’t work.

Has anyone experienced a similar issue or could point me in the right direction?
Here is the screenshot showing how the port forwarding has been configured.

Thanks in advance

Hi…

Please… look at this URL, about how FTP works:

It is not just the tcp/21, but also, but, when using active mode or passive port, the ftp procol use tcp/21 and any port, between 1024-65535 (windows).

The best way to make it work, is search for a profissional ftp software, where you can configure the both modes (active/passive) and also tcp ports will be used by both.

Thanks for your reply.

Unfortunately, the FTP server (the X2 Marine 15 screen) does not allow configuration of the passive port range , and there’s no documentation available indicating which ports it uses to respond.

I’ve tried checking the logs on the RUT241 to see if it shows which port is being blocked or rejected during the connection attempt, but I couldn’t find anything useful there.

Any suggestions on how to monitor or capture which ports the server is actually trying to use, or how to work around this limitation?

Hi.

The tcp port range it is always be dynamic, selected by ftp server and ftp client.
So… Maybe, you can do a rule to forward everything to your ftp server? This is a very crazy suggestion.

As you mentioned, I’m thinking of creating a rule that allows everything and leaving it deactivated, only activating it when I need it, which would be in case of, let’s say, an emergency. It wouldn’t be something regular, maybe two or three times a year. Any ideas on how to do this? I know it’s bad practice, but I need to have occasional access

This url it is a start point.

Your source, will be wan/any/tcp
Destination will be the ip_address_ftp_server(@LAN)/any/tcp.