Custom Query (8170 matches)

Filters
 
Or
 
  
 
Columns

Show under each result:


Results (2101 - 2200 of 8170)

Ticket Summary Owner Type Priority Component Resolution
#2658 "Delete To Trash" Option Feature request normal FileZilla Server wontfix
Description

Like to see a "Delete to Trash" option where if a file is deleted from a remote client, the file is move to the trash as opposed to deleted from the drive(s).

Joey

#2662 enable or disable to launch filezilla when windows starts Feature request normal FileZilla Server
Description

I miss the option "Start filezilla server with windows" as a checkbutton to be enabled or disabled in preferences. Is annoying that now I want to disable filezilla server at windows startup and the only way I know is to uninstall it. Users shouldn´t be supposed to know what the windows registry, msconfig or services.msc is.

#2667 Improved auto-ban for anti-hacking Feature request normal FileZilla Server
Description

I would like to be able to set the auto-ban to permanently ban any IP who attempts to use a username, password or combination of username and password from set lists. I have almost daily attempts on my FTP from people attempting to log in as administrator with passwords such as passwd, password, 12345, 123abc, etc. I want to be able to set the auto-ban to permanently ban any IP which attempts to log on as administrator, an account which does not exist on my FTP, or attempts to log on with any account using a common password. It should, first, check to see if it is a valid account and password and, if not, automatically ban after a set number (I would set this to 1) of failures.

I would also like to be able to ban any user who attempts to change to certain or nonexistent directories. If I allow anonymous access I inevitably get the 'script kiddies' who all run the same program to try to change to the commonly hackable directories, none of which are accessible on my FTP. I would like to be able to set the auto-ban to permanently ban anyone who tries to change the directory to any in a set list or anyone who attempts to change to a directory which does not exist on a certain number (again, I would set this to 1) of attempts.

For a future concern, rather than simply disconnect IP addresses for those who have been auto-banned, letting them know they have been auto-banned, you may allow them to continue entering usernames and passwords until their heart's content, just stop accepting them after they have been banned. This would give them no clue they have been banned and no clue how many attempts they got before being banned, which would give them no help in coordinating a distributed brute force attack with a bot net.

#2681 Override Files by Rename Feature request normal FileZilla Server worksforme
Description

Webcam (for examble Axis-Webcams) upload a tempfile. When the Upload is finished the Cam send a rename-command to the correct Filename. So the Picture of the Webcam can by reached every time.

The FileZilla Server don't allow to rename to an exist filename. I need a option to allow this.

#2683 public upload folder Feature request normal FileZilla Server wontfix
Description

I want the ability to have an upload folder that when someone attempts to list anything in their, it will show as empty. Even though their could be files and directories already their, it should not show up when a list is performed. The user should be able to upload to this folder as well but can't see that the file they upload. Here is an example:

/ Can see the list of files/directories in here including upload. /upload/ Can't list anything in here unless they know the name of it. But when they do try to list, it doesn't give the ftp client a permission denied message, just shows nothing. /upload/test/ Can see everything and any directories in it but can't upload anything.

I've tried setting files to be write and not read with no list permissions, and even just write and no list permissions can still can't accomplish what I want to do.

#2686 Alter SYST reply to increase security Feature request normal FileZilla Server
Description

Is it possible to alter the "SYST" reply so that it doesn't report to the client that the server is FileZilla?

An example of the returned string can be: 215 UNIX Type: L8

Reason for asking is to enhance security - to make it harder to figure out what the server is.

I'm not sure if this has been raised before but I couldn't seem to find any.

Or, have I missed out an option somewhere? - but it looks like it's hard coded into the EXE...

I'm running FileZilla Server version 0.9.23 beta.

#2699 Attach users to multiple groups. Alexander Schuch Feature request normal FileZilla Server
Description

It was mentioned that the capability to do this is indeed located in the filezilla server source, but is not implemented. However I think having the ability to assign users to more than one group within the server interface would be a very handy capability and streamline the process of setting the server up for those of us with complex directory structures or users that need specific access for short periods of time to other groups.

#2727 UP/DL Ratio Feature request normal FileZilla Server
Description

I would like to request a feature for Upload and Download Ratios. So that you can define the MBs a User have to upload before he can download. Defined by User and/or Session.

Thx in forward DJAssi

#2728 Webservice Feature request normal FileZilla Server
Description

I would like to implement a function, so I can display stats of a user or session on a website. Is it possible to get it by webservice or s.th. else?

thx DJAssi

#2731 X-Forwarded-For Support Feature request normal FileZilla Server
Description

For load-balanced environments it would be very helpful if FileZilla Server could be configured to utilize the IP address provided in an X-Forwarded-For header in place of the default client IP address.

Currently all incoming traffic is shown as coming from the load balancer itself.

This change would permit (more) accurate logging and the use of the Autoban function within a load-balanced environment.

#2740 Individual down- and upstream traffic allocations for users Feature request normal FileZilla Server
Description

A possibility to limit how much data a user/group can download/upload, for example per month.

#2749 Scripting engine for server Feature request normal FileZilla Server
Description

Is it possible to integrate any scripting engine (for ex., DMDScript) to the server engine, like in g6ftp (http://www.g6ftpserver.com/manuals/en/scripts.html)?

#2753 Timestamp for all log entries Feature request normal FileZilla Server invalid
Description

Please add timestamp to all possible log entries in Filezilla Server (not only user actions as it is now), e.g. also: Connection to server closed. Connected, waiting for authentication Logged on etc.

#2756 Default unicode handling Feature request normal FileZilla Server
Description

I would really appreciate, if you added a checkbox determining the default UTF8 handling - "opts utf8". Older clients doesn't support unicode and I'm not able to tell everybody to send "opts utf8 off" command... Pleeasee...

#2758 Change attempts range before autoban Feature request normal FileZilla Server
Description

The range is now 5-999. Why don't you let user to create his own policy? I think 1-999 is OK. I'd use a value 3 for instance...

#2763 "Show last log file","Show log files folder" status bar menu Feature request normal FileZilla Server rejected
Description

"Show last log file" or "Show log files folder" command in menu when user choose it on icon in status bar (if logging turned on). It is useful small feature.

#2764 "Show log files folder" button in settings window Feature request normal FileZilla Server duplicate
Description

Small feature "Show log files folder" button in settings window in Logging tab. Shortcut to log files.

#2773 limit max. connections per IP Feature request normal FileZilla Server fixed
Description

Hello, it would be nice to have the possibiliy to limit the max. Number of connections per IP instead of limiting the max. nr of total connections. By limiting the total connections a guy trying to hack your server can block the server for all other users!

Besides this, great program!

#2777 Server version for Linux/Mac Feature request low FileZilla Server rejected
Description

It's time to say goodbuy to ProFTPd, PureFTPd, and all the others! Please port the server version to Linux and include a X-platform GUI!

greets and best regards and mulitple thanx for the great work!

tomakos

#2778 Autoban - User List Feature request normal FileZilla Server
Description

It would be very nice to be able to see a list of users (IP addresses) that have been autobanned and the time when the ban will expire.

On that list page it would be nice to white list or release a "ban" manually instead of waiting for the ban time period to expire.

Lower priority it would be nice from the same list page to permenantly ban a user/ip address if desired.

Thanks for the great program. I use it ever where and tell as many people as I can about your software.

#2798 Support disabling server activity in the server interface Feature request normal FileZilla Server rejected
Description

I have heavily used Filezilla Servers. When opening the Admin tool the info that scrolls across the admin tool moves so fast that you can't even think about reading it. This also causes a big problem with screen refresh when you are accessing servers remotely. An option to enable/disable the output of server activity to the admin console would be most helpful. Thanks for a great product!

Cheers!

#2799 Advanced Logging Feature request normal FileZilla Server duplicate
Description

i'd love to see logging options, such as keeping one log file per user or for different time intervals (not only per day, but per month for instance). as a combination of the above, saving log-files per day/week/month in subfolders for each user.

#2806 Customizable FTP messages Feature request normal FileZilla Server
Description

Add ability to customize the FTP message for every FTP action; for example, if there is no data transfer, we should be able to change the message shown in the console, than just show "Connection timed out".

#2807 Account statistics Feature request normal FileZilla Server
Description

In user management dialog, inside the "Page" field, there should be a "Statistics" page, where some statistics such as Nubmer of logins and total data transferred (and others :) will be logged.

#2808 Support user-specific timeout configuration Feature request normal FileZilla Server rejected
Description

Each user should have separate no-connection and no-data-transfer timeout options from the others. Of course, the global options can exist.

#2809 Aliases Feature request normal FileZilla Server rejected
Description

When adding a shared folder, other than the home folder, the user should be forced to enter a name and the vitual FTP path. The way it is now (v0.9.24), adding a shared folder without an alias, is meaningless, since it doesn't appear in the client's list.

#2824 Support logging to the W3C or ProFTPd log file formats Feature request normal FileZilla Server rejected
Description

Many log parser scripts are unable to parse Filezilla Server Logs in thier current form. Can we have an option for loggin formats in the server i.e. XFERLOG or W3C extended format.

#2830 UTF-8 directory/filename encoding Feature request normal FileZilla Server
Description

I'd like to support FileZilla the UTF-8 / unicode directory- and filename-encoding for internationalization. (I'm from Hungary :-)

#2839 Filezilla server.xml Check for update every X seconds Feature request high FileZilla Server
Description

From a programmer's point... I'd love to be able to modify the xml file for filezilla server and have the changes take place in x amount of time (specified in the interface as "check for xml changes every x seconds").

The deployment reason for this is I have several load balanced Web Server and I wish to be able to provide redundancy/load balancing for my Ftp server as well. That way making changes to one file, I can propagate to the rest of the ftp servers with a simple file sync program like goodsync.

I ask because I believe it to be a simple implementation.

Thanks, -dan

#2884 Disable Account after the "Expiration Date" Feature request high FileZilla Server duplicate
Description

Users -> General

Account settings

-- Enable account

-- Expiration Date

A feature that accounts can be disabled after the "Expiration Date" set.

Thanks a lot ~

#2891 Allow the server to automatically start in a disabled state Feature request normal FileZilla Server wontfix
Description

I have the FileZilla Server installed as service on a server that only I have access to. It is set to offline most of the time and only switched online for a specific download task (security reasons).

Several people have access to the Server Interface to be able to switch it online temporarily. It would be ideal if it were possible to set the FTP Server offline at startup of the service, now I have to do this manually (and remember it in particular) after a reboot of the server. Setting the service to start manually wouldn´t help me since I´m the only one with access to the service and the other users rely on the FilZilla Server service to provide them access to the Server Interface.

#2896 Message Filter in Server Interface Feature request normal FileZilla Server rejected
Description

Hello,

i have a lot of Users they are do al lot of trafic. I was great when i can select a Filter (by UserId, IP etc). If i select User1 thne only show Messages from User1 in the Server Interface.

Else i lost the overview...

Greetings

Sorry for my "god" englisch

#2906 Some Security minded options Feature request normal FileZilla Server
Description
  1. Option for hiding directorys that are hidden or marked as system (But still accessable)
  1. Edit section for ban'ed Ip address's Said ip maybe a freind messing around (you may want to let them back in)
  1. An option for restricting the number of connections from a single ip address.
  1. Site Message Option - Drop a message to all or a single user that the Server may be comming down for work in a few.

.

#2915 SFTP Server Support Feature request normal FileZilla Server duplicate
Description

I love your server, but I am running into issues that boxes that I have only support SFTP. I would love to see SFTP support in your server.

#2928 FileZilla Server.xml file in wiki/FAQ Feature request normal FileZilla Server wontfix
Description

Please mention the plain-text version of the properties, FileZilla SErver.xml, in your wiki/FAQ/docs somewhere. I hope to use this file for replicating an installation from one machine to another, and it would be helpful to know whether that file is really the source of properties or not.

If you really want to make a new feature, I was thinking you might want as an Export/Import sort of thing, for people who are not happy with finding an XML file in the install folder, but that is not strictly necessary.

Thanks for listening.

#2960 Auto ban Feature request normal FileZilla Server
Description

auto ban ip that try to log more than X time with the wrong password and auto ban the ip that try to log with the user admin or administrator

#2969 ActiveDirectory Authentication / NTFS Authorization Feature request normal FileZilla Server
Description

As Filezilla Server is for Windows, I think it would be great to be able to use the Windows Domain (which in most cases will be the localhost) for user authentication. Rights management can be obtained via ntfs permissions. So it's not necessary to manage several accounts, their passwords and permissions.

#2971 Linux support Feature request normal FileZilla Server
Description

I see you have a linux version for the client. Is there any possibility that a linux server will be made available. I would like to move my server to linux but Filezilla is the easiest server to set up under windows and I would like it for Linux.

Very many thanks for listning, Andy Norrie gm1mqe@…

#2988 Option to hide directory content Feature request normal FileZilla Server rejected
Description

Hello! It would be nice to be able to have an option to hide the content of a folder. This way, people could add new files to a folder, but the file would be hidden right away. I would set this separatly from the "read" option. A file folder could have its files "read" and "hidden". Thank you!

#3753 Connection Errors Bug report low FileZilla Server invalid
Description

I am using Filezilla server to host multiple ftp connections. We have had a problem lately with no one being able to connect. All of our clients are getting 421 Socket Errors. Most of them have no issue with using Filezilla client but using any other client it fails. Can you please help.

#3761 system path disclosure Bug report critical FileZilla Server duplicate
Description

The vulnerability occurs because the command "mput" lets you list the names of the files of any directory on the disc. While you can not have access to files, this can create a map of the disc.

POC


Microsoft Windows XP [Versión 5.1.2600] (C) Copyright 1985-2001 Microsoft Corp.

C:\Documents and Settings\admin>ftp ftp> open 127.0.0.1 21 Conectado a 127.0.0.1. 220 <script>alert(1)</script> Usuario (127.0.0.1:(none)): juan 331 Password required for juan Contraseña: 230 Logged on ftp> mput Archivos locales c:\windows\*.* mput c:\windows\.? Error al abrir el archivo local c:\windows\.. mput c:\windows\..? Error al abrir el archivo local c:\windows\... mput c:\windows\$hf_mig$? Error al abrir el archivo local c:\windows\$hf_mig$. mput c:\windows\$MSI31Uninstall_KB893803v2$? Error al abrir el archivo local c:\windows\$MSI31Uninstall_KB893803v2$. mput c:\windows\$NtServicePackUninstallIDNMitigationAPIs$? Error al abrir el archivo local c:\windows\$NtServicePackUninstallIDNMitigationA PIs$. mput c:\windows\$NtServicePackUninstallNLSDownlevelMapping$? Error al abrir el archivo local c:\windows\$NtServicePackUninstallNLSDownlevelMa pping$. mput c:\windows\$NtUninstallKB835221WXP$? Error al abrir el archivo local c:\windows\$NtUninstallKB835221WXP$. mput c:\windows\$NtUninstallKB873339$? Error al abrir el archivo local c:\windows\$NtUninstallKB873339$. mput c:\windows\$NtUninstallKB885835$?

#3762 system path disclosure Bug report normal FileZilla Server rejected
Description

The vulnerability occurs because the command "mput" lets you list the names of the files of any directory on the disc. While you can not have access to files, this can create a map of the disc.

POC


Microsoft Windows XP [Versión 5.1.2600] (C) Copyright 1985-2001 Microsoft Corp.

C:\Documents and Settings\admin>ftp ftp> open 127.0.0.1 21 Conectado a 127.0.0.1. 220 <script>alert(1)</script> Usuario (127.0.0.1:(none)): juan 331 Password required for juan Contraseña: 230 Logged on ftp> mput Archivos locales c:\windows\*.* mput c:\windows\.? Error al abrir el archivo local c:\windows\.. mput c:\windows\..? Error al abrir el archivo local c:\windows\... mput c:\windows\$hf_mig$? Error al abrir el archivo local c:\windows\$hf_mig$. mput c:\windows\$MSI31Uninstall_KB893803v2$? Error al abrir el archivo local c:\windows\$MSI31Uninstall_KB893803v2$. mput c:\windows\$NtServicePackUninstallIDNMitigationAPIs$? Error al abrir el archivo local c:\windows\$NtServicePackUninstallIDNMitigationA PIs$. mput c:\windows\$NtServicePackUninstallNLSDownlevelMapping$? Error al abrir el archivo local c:\windows\$NtServicePackUninstallNLSDownlevelMa pping$. mput c:\windows\$NtUninstallKB835221WXP$? Error al abrir el archivo local c:\windows\$NtUninstallKB835221WXP$. mput c:\windows\$NtUninstallKB873339$? Error al abrir el archivo local c:\windows\$NtUninstallKB873339$. mput c:\windows\$NtUninstallKB885835$?

#3773 Manage FileZilla User Accounts using PHP Feature request normal FileZilla Server worksforme
Description

Hello,

I am Subhasish Nag, an IT Professional with having 4 years 9 months experience in PHP, ASP.Net and many more.

Right now I am a Project Manager of a company. In our company we have our solely dedicated Windows 2003 server where I have installed FileZilla Server version and managing the ftp section.

I have the Remote Desktop Connection by which I can log in into the server and can add/edit/delete the username and password with accessing directories and permissions.

It is very much tough to manage the users by this way. Actually as I know PHP programming very well, so it will be better if you can enable the software to use the internal feature via COM. Using PHP, I want to call the internal functions via COM. So, I can see the users and password via PHP and add/modify/delete those users and do everything in respect of a users functionalities.

Please let me know if it possible or not? If possible or if you have already done the features, then please give the code.

#3801 case sensitivity for changing name Bug report normal FileZilla Server rejected
Description

Hello,

When i try to change a file name from "Les vagues" to "les vagues". Filezilla client 3.1.3 said "550 file exists".

It's probably a probleme on filezilla server 0.9.27 who dont't know case sensitivity.

#3835 restart server to take modification in FileZilla Server.xml Feature request low FileZilla Server rejected
Description

hello

I try to developpe an PHP interface to modify the FileZilla Server.xml file.

It work but my problem is that the server take care of my add only if y restart the server :/

are there a way to make CLI ? (DOS command ligne with the server) or a why to say to fileZilla server to take care of the modification made in the file ?

best regards telnes

#3840 localhost connection encryption Feature request normal FileZilla Server duplicate
Description

Forced SSL on filezilla server is great option but it has two annoying side effects that could be removed:

  • if there is some 3rd party software involved (like html interface to web server) it forces admin to use interface that supports encrypted connections. There is a lack of such interfaces on web.
  • wasting resources in case of loopback connections

The simple workaround would be to check connection if it comes from localhost and disable encryption.

It is probably one if to set as i saw you allready have IsLocalConnection() functions implemented so it could probably be done quite fast but currently i dont have additional time to modify server, if someone can do it quick please do it...

#3902 Email notification Feature request high FileZilla Server duplicate
Description

I cannot find an option for email notification on the Server settings. I need to be notified if there is any new files are FTP'd on the server via email.

Thanks!

#3916 Thousands separator for bytes sent/received Feature request normal FileZilla Server fixed
Description

Just a simple suggestion.

Is it possible to add thousands separator for numbers of sent/received bytes in the file Progress field and in the Status Bar? So the numbers would look like 185,044,568 instead of 185044568.

Thank you for this excellent product!

#3943 security risk Bug report high FileZilla Server rejected
Description

Our IT department is flagging (or flogging, depending on perspective) regarding a security risk with the filezilla server. Is this something that can be fixed?

*

The remote FTP server crashes when the command 'MLST a' is issued right after connecting to it.

An attacker may use this flaw to prevent you from publishing anything using FTP.

Solution : if you are using wftp, then upgrade to version 2.41 RC12, if you are not, then contact your vendor for a fix.

Risk factor : High CVE : CVE-2000-0647 BID : 1506

Nessus ID : 10487

#3955 windows Installer - upgrade leaves old 'FileZilla Server Interface.exe' Bug report normal FileZilla Server outdated
Description

I did a upgrade from 0.9.25 to 0.9.27, and it doesn't upgrade 'FileZilla Server Interface.exe' Though if you delete the file before the upgrade it will work then.

OS is XP SP3, clean install.

#3972 INSTALLATION AND CONFIGURATION GUIDELINES Other low FileZilla Server invalid
Description

Dear Sir,

i have heard that file zila is a very good solution for ftp. i have download the server but i dont understand how to install and how to configure the same, i would appreciate if you can tell me the guidelines of installation and configuration. I have also tried to download the documents from the site but i am unable to find it. i have installed the same but i need more help in config.

your prompt reply will by highly appreciated.

Regards, Abbas

#3981 Security Hole: rights escalation (ImagePath) Bug report normal FileZilla Server fixed
Description

By default, filezilla server register as service:

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\FileZilla Server\ImagePath = C:\Program Files\FileZilla Server\FileZilla Server.exe

but due windows .. a.. behavior, if name of ImagePath created without quotation (e.g. "C:\Program Files\FileZilla Server\FileZilla Server.exe"), first, c:\program.exe will be runned (if existed). By default windows XP, 2003 allows user (non-administrator) to create files in the root of "c:\". By putting program.exe file in c:\ user could escalate rights.

Solution: in the installation process, add an ImagePath with quotation.

#3993 permission denied when download file eric.badon@… Bug report normal FileZilla Server outdated
Description

I have an error 550 permission denied when I want to download a file.

On server side full control on windows directories and full control on filezilla share folder.

Uploading files works fine.

filezilla server 0.9.28 beta

#4021 FileZilla Server produces ECONNABORTED with TLS/SSL Bug report normal FileZilla Server outdated
Description

When trying to connect to Filezilla Server 0.9.27 or 0.9.29 with TLS enabled from Filezilla Client 3.1.5.1 the client reports: "Server did not properly shutdown TLS connection" followed by "ECONNABORTED". It appears to authenticate properly, but fails when trying to retrieve a directory listing.

Forcing data encryption does not help.

#4025 "Connection Closed by Server" message Bug report normal FileZilla Server outdated
Description

I have a "connection closed by server" message as an error message on the last line of the top large box, yet data continues to be exchanged, as indicated by the bottom box (progress line as well as the number listed) and also my computer also shows data is being transferred. It has transferred at least 100 mb since this error message came up, and continues to transfer more to the site.

#4026 FileZilla & case-sensitive filenames Bug report normal FileZilla Server rejected
Description

I need to add shared folder, which is virtual drive of FTPDrive proggie (drive Z: f.e.). When I came to drive Z: by Far manager - all fine. When I add Z: to shared folders of FileZilla Server - I cannot change/list dir except root. From FTPDrive logs (by Z: letter): [22731781|2828] Sending 'CWD Books [22731781|2828] RecvResponse(31788768) [22731812|2828] RecvResponse(31788768) responce='250 Directory successfully changed. [22731812|2828] CWD Books

responce 250 for 'ftp.---.ru'

(by FileZilla FTP Server with shared folder Z:): [22711953|3180] Sending 'CWD books [22711953|3180] RecvResponse(31788768) [22711968|3180] RecvResponse(31788768) responce='550 Failed to change directory. [22711968|3180] CWD books

responce 550 for 'ftp.---.ru'

FileZilla Server converts case to lower, but FTP mapped like Z: drive is case-sensitive.

#4028 Incorrect usages of memset function Bug report normal FileZilla Server fixed
Description

We've detected following issues in sources from https://filezilla.svn.sourceforge.net/svnroot/filezilla/FileZilla Server/trunk/...

  1. File: FileZilla Server/source/Interface/misc/ProcessorInfo.h:

247: MEMORYSTATUS memoryStatus; 248: 249: memset (&memoryStatus, sizeof (MEMORYSTATUS), 0); 250: memoryStatus.dwLength = sizeof (MEMORYSTATUS);

Line 249 should be 249: memset (&memoryStatus, 0, sizeof (MEMORYSTATUS));

  1. The same issue in File: FileZilla Server/source/misc/ProcessorInfo.h

Regards, Dmytro Gorbunov Leader of SaveSources team http://savesources.com

#4041 LIST Issue with SSL/TLS Connection Bug report normal FileZilla Server rejected
Description

Hi,

The following information concern Error in the syslog of Filezilla, i used the last version of Server and Client.

Status: Resolving address of ulyssefbo.serveftp.com Status: Connecting to 81.48.120.218:990... Error: Connection attempt interrupted by user Status: Resolving address of ulyssefbo.serveftp.com Status: Connecting to 81.48.120.218:20... Status: Connection established, initializing TLS... Status: Verifying certificate... Status: TLS/SSL connection established, waiting for welcome message... Response: 220-FileZilla Server version 0.9.29 beta Response: 220-written by Tim Kosse (Tim.Kosse@…) Response: 220 Please visit http://sourceforge.net/projects/filezilla/ Command: USER frederic Response: 331 Password required for frederic Command: PASS * Response: 230 Logged on Command: SYST Response: 215 UNIX emulated by FileZilla Command: FEAT Response: 211-Features: Response: MDTM Response: REST STREAM Response: SIZE Response: MLST type*;size*;modify*; Response: MLSD Response: AUTH SSL Response: AUTH TLS Response: UTF8 Response: CLNT Response: MFMT Response: 211 End Command: PBSZ 0 Response: 200 PBSZ=0 Command: PROT P Response: 200 Protection level set to P Status: Connected Status: Retrieving directory listing... Command: PWD Response: 257 "/" is current directory. Command: TYPE I Response: 200 Type set to I Command: PORT 16,212,216,127,174,168 Response: 200 Port command successful Command: LIST Response: 150 Opening data channel for directory list. Response: 425 Can't open data connection. Error: Failed to retrieve directory listing Status: Retrieving directory listing... Command: PORT 16,212,216,127,174,177 Response: 200 Port command successful Command: LIST Response: 150 Opening data channel for directory list. Response: 425 Can't open data connection. Error: Failed to retrieve directory listing Status: Retrieving directory listing... Command: PORT 16,212,216,127,174,178 Response: 200 Port command successful Command: LIST Response: 150 Opening data channel for directory list. Response: 425 Can't open data connection. Error: Failed to retrieve directory listing Status: Retrieving directory listing... Command: PORT 16,212,216,127,174,182 Response: 200 Port command successful Command: LIST Response: 150 Opening data channel for directory list. Response: 425 Can't open data connection. Error: Failed to retrieve directory listing Status: Retrieving directory listing... Command: CWD /films Response: 550 CWD failed. "/films": directory not found. Error: Failed to retrieve directory listing Status: Retrieving directory listing... Command: CWD /c:/films Response: 550 CWD failed. "/c:/films": directory not found. Error: Failed to retrieve directory listing Status: Sending keep-alive command Command: TYPE I Response: 200 Type set to I Status: Retrieving directory listing... Command: CWD / Response: 250 CWD successful. "/" is current directory. Command: PWD Response: 257 "/" is current directory. Command: PORT 16,212,216,127,24,209 Response: 200 Port command successful Command: LIST Response: 150 Opening data channel for directory list. Response: 425 Can't open data connection. Error: Failed to retrieve directory listing Status: Sending keep-alive command Command: PWD Response: 257 "/" is current directory.

Thanks,

Frederic

#4050 better support through firewalls doing passive ftp and passive ftp over ssl through nat Feature request normal FileZilla Server rejected
Description

Currently most firewalls examine the response information sent from the ftp server back to the ftp client during a passive ftp session. The firewalls modify the response so that an internal ftp server responding with an internal address in a passive response is changed so that it contains the external address corresponding to the nat policy rules on the firewall. Basically [192,168,127,2,78,34] would be changed by the firewall to the external WAN ip for the NAT.

This works fine as long as your doing regular ftp.

However when you do ftp over ssl passive you have to tell the filezilla server which external ip to use in the passive settings of the server. You have the option of doing this already and there is a checkbox to use the internal address if a localhost is connecting.

This all works great unless your now trying to use that standard ftp passive connection through the firewall.. a firewall that is attempting to manipulate the data in the passive response. When the firewall sees that outbound reply traffic back to the ftp client and it contains the external wan address, instead of the internal ip address, it has no idea what to do and drops the traffic assuming its some sort of spoof. I have used several firewalls, watchguard, sonicwall, and they all perform the same way.

However, if there was a checkbox for "use local address for standard ftp passive connections" such that any connection over passive to port 21 would result in the reply response using the internal address instead of the wan address, well it would solve all of these issues with firewalls and how they work. This way, the only connection replys outbound back to the client would be either the internal address for port 21, which the firewall would modify, or the external wan address for anything else. Of course, not forgetting the current setting for using the internal address for local connections.

Thank you

#4060 Running Multiple Server Instances On single Computer Feature request normal FileZilla Server duplicate
Description

Dear developer, I really like your ftp server and would love it if I could run more than one server on the same computer. Since I would like to have one server that is secure with SSL/TSL and one that is not. Since firefox does not work very smoothly with SSL, i would like to have one server with non-sensitive files that is unsecure. Thank you, Brian

#4065 UPLOAD does not work. Bug report normal FileZilla Server outdated
Description

I've tried to install new FileZilla (I have Vista) but it gives me a server pop-up. When I click okay. I get this screen:

FileZilla Server version 0.9.29 beta Copyright 2001-2006 by Tim Kosse (tim.kosse@…) Connecting to server... Connected, waiting for authentication Logged on

AND NOTHING HAPPENS. My old version of filezilla is NOT uploading my files. I need help asap. Thanks,

Kalyn Davis nylaksivad@…

#4067 Cannot UPLOAD updated files with new version Bug report normal FileZilla Server outdated
Description

I downloaded the new version of Filezilla but it still does not upload my updated files.

I have Vista and your new version says it's okay with Vista.

Please let me know what I need to do.

Thanks, Kalyn

#4068 Downloaded large files are not removed from queue Bug report normal FileZilla Server duplicate
Description

Please see ticket: http://trac.filezilla-project.org/ticket/3914

This error appears to come from the server side. I'm working o a dedicated server and the timeout for inoperativity is set to 60 seconds (both options).

When downloading a large file which will take more than 60 seconds (normally 1-2 hours), the server appears to have dropped silently the command channel. When the download eventually finishes, the server can't tell the client it has done so, thus the file remains in the queue.

To fix this I believe it is necessary to keep the commend line up and connected as long as the file transfer is in progress. I've tried to disable the timeout, and then it works.

#4082 Quota Management Feature request normal FileZilla Server duplicate
Description

It's very useful to be filezilla server has quota management.

#4093 allowing domains to access via IP List domains access IP list allow extern Feature request normal FileZilla Server worksforme
Description

Hi everyone,

I disabled under IP Filter all extern access in the Top IP Box. In the second Box I could exclude/enabled some IPs. Intranet and some People I allow the Access from extern IPs.

But in the DSL century the IP from my persons are changed every day, so I created for everyone an DynDNS Domain Acc.

But in the exclusion Field no Domains are excepted.

It is possible to implement this?

regards McSnoop

#4103 Download never stops Bug report normal FileZilla Server outdated
Description

This is my first bug report, hope I explain details you need. I have Filezilla Server 0.9.29 and a few computers at home with filezilla ftp and other ftp programs including download managers that support ftp, I use filezilla server to share my videos and music. At random times when downloading a file it just never stops, for example, I have Free Download Manager copying the contents of one folder from the server to another hdd, one video being copied called Wing Commander.avi is open in the server progress window but the program downloading it shows 1265703035% [4096 ?], if I cancel the download and resume it the same thing happens. If I cancel the download and restart from begining it normal completes the download. Now had a similar program using filezilla ftp to download bulk files the same way but filezilla ftp just stopped with no error on 99%. I have a screen capture to attach, but ticking the box below "I have files to attach to this ticket" doesn't bring up a attachment box.

#4107 Choose font for message log window Bug report normal FileZilla Server rejected
Description

This is a request to re-open Ticket #1568 "Choose font for message log window".

The final comment is:

"Changed 2 years ago by codesquid

This feature has been implemented. Please update to the most recent version of FileZilla."

However, I have just re-installed the latest version of Filezilla Server (identifies itself as version 0.9.29 beta) and there is no method that I can see to change the font size in the server interface window.

I have attached screenshots of both the server IF and an Explorer window (default system font size) to show relative font sizes.

#4136 Secure Site-To-Site-Transfer Feature request low FileZilla Server rejected
Description

I point to this forum post. This feature is very useful (not only for me). Also filezilla will be on of the first free ftp-server for windows with this feature.

#4179 Error connecting to server Bug report normal FileZilla Server fixed
Description

When I start the server, sometimes it starts sometimes it doesn't. There is no error message besides: error connecting to server. It keeps retrying but to no avail. Changing the server's port also does not help. How can I troubleshoot this, as sometimes it connects right away and sometimes it's impossible? Same settings, clean reboot, nothing seems to make a difference.

#4184 425 Can't open data connection. Bug report normal FileZilla Server rejected
Description

I have set the server to explicit TLS and encrypted data connection. I have opened port TCP 21 and TCP data port 990 to the server machine. The client connects just fine but I get the above error and the client cannot retrieve the file list. I copy below the log from the client: "Quote" Status: Resolving address of ???.dyndns.org Status: Connecting to ???.???.?54.?91:21... Status: Connection established, waiting for welcome message... Response: 220-FileZilla Server version 0.9.29 beta Response: 220 get out of here Command: AUTH TLS Response: 234 Using authentication type TLS Status: Initializing TLS... Status: Verifying certificate... Command: USER ??? Status: TLS/SSL connection established. Response: 331 Password required for ??? Command: PASS * Response: 230 Logged on Command: PBSZ 0 Response: 200 PBSZ=0 Command: PROT P Response: 200 Protection level set to P Status: Connected Status: Retrieving directory listing... Command: PWD Response: 257 "/" is current directory. Command: TYPE I Response: 200 Type set to I Command: PASV Response: 227 Entering Passive Mode (???,???,???,???,6,229) Status: Server sent passive reply with unroutable address. Using server address instead. Command: LIST Response: 425 Can't open data connection. Error: Failed to retrieve directory listing "Unquote"

I have added the "?" marks for privacy.

#4191 Typo in Security settings Bug report low FileZilla Server fixed
Description

Under Edit -> Settings -> Security settings, there's a typo.

It says 'In this case only the the first three parts...'.

Of course, that's one 'the' too many.

#4196 Password encoding Feature request normal FileZilla Server outdated
Description

Can you please offer password encoding such as s/Key MD4 and s/Key MD5 for the FileZilla Server.

Outstanding job - thanks again

#4203 FileZilla Server 'session' issue Bug report low FileZilla Server rejected
Description

I recently ran into a problem with the latest version of FileZilla Server (0.9.30).

I use the 'Autoban' feature, which uses the default of 5 failed attempts and bans for 999 hours. One of my accounts had a problem where they were using the wrong password and their account was banned.

I went into the FileZilla Server interface and removed their IP from the filter list, however they were still blocked. I then clicked the lightening bolt icon to take the server offline and then put it back online. They were still banned.

I then went into the Windows Services and restarted the FileZilla Server service itself, which fixed the issue.

So, there is an underlying bug here, however even with that, shouldn't clicking the lightening bolt stop and start the service? (Right now it looks like there is another 'level' which doesn't need to be there.)

#4251 FileZilla 0.9.30 beta Unhandled Exception Bug report normal FileZilla Server outdated
Description

FileZilla Server 0.9.30 beta running on WIN2003 ENT SP2 w/ 2GB RAM. Service appears to hang and will not accept connections.

Administrator required to stop/start service to resolve issue. NOTE: It takes approximately 3 minutes for FileZilla Server service to stop.

Below is the text from the .RPT file. I will also attach the corresponding .DMP file.

Exception report created by FileZilla Server version 0.9.30 beta ===================================================

System details:


Operating System: Enterprise Server Service Pack 2 (Build 3790) Processor Information: Vendor: GenuineIntel ,Speed: 2661MHz ,Type: Intel Pentium compatible,Number Of Processors: 2 ,Architecture: Intel ,Level: Pentium II/Pro,Stepping: 38-48 Memory Information: Memory Used 10%, Total Physical Memory 2096584KB, Physical Memory Available 1879112KB, Total Virtual Memory 2097151KB, Available Virtual Memory 2009224KB, Working Set Min : 200KB Max : 1380KB .

Exception Details:


Exception code: C0000005 ACCESS_VIOLATION Fault address: 100079C8 01:000069C8 D:\Program Files\FileZilla Server\libeay32.dll

Call stack:


Address Frame Function SourceFile 100079C8 47C85290 0001:000069C8 D:\Program Files\FileZilla Server\libeay32.dll

#4255 FileZilla Server.exe crashes during Windows shutdown Bug report normal FileZilla Server duplicate
Description

This is identical to the bug of the same ticket title, reported over to 2 years ago. The problem cropped up 3 days ago with my previously installed version 0.9.29 and this happened after years of trouble free operation. I un-installed this version, cleaned the registry, and installed version 0.9.30. The problem remains the same.

Windows XP SP2 Filezilla Server 0.9.30

#4265 Make big digits format more user friendly. Patch normal FileZilla Server fixed
Description

Hi,

It is difficult to read some values in FileZilla Server interface. Such received/sent bytes number etc.

I would like to propouse patch. It divide big numbers by groups, with three digits per each. It is much more easy to read.

Thanks!

#4337 Problem login to windows by using of filezilla server Bug report low FileZilla Server invalid
Description

Hi i gone through the settings of filezilla server and configured what you have given in the configuration settings, problem is i can able to login to filezilla server where i have hosted the site and pages loading successfull when i try to access the site error is coming the error is : Transfer channel can't be opened. Reason: No connection could be made because the target machine actively refused it. Error: Download failed.

Please resolve the problem ASAP Thanks Hari

#4351 Server Interface cannot auto-connect to the server Bug report normal FileZilla Server outdated
Description

The "Always connect to this Server" option does not work. It defaults back to the original settings of port 14147.

#4360 long file names Bug report low FileZilla Server outdated
Description

The issue is dependant on the 'sum of the size of filenames'. If the sum of the size of filenames in the FTP folder is up to 21.6Kb, the file adapter is picking files. 657files - not picking -- 22 KB 21,723 bytes[Sum of the 'filename' size] 656files - picking -- 21,684 bytes[Sum of the 'filename' size]

#4362 Being able to transfer files from one server to another would be nice! Feature request low FileZilla Server duplicate
Description

Hi,

I think it would be really nice, if you made it possible to transfer a file between to servers, so you didnt have to first download file(s), disconnect, connect to the other server and upload.

If you could make it possible to view one server in the left 'window/table' and another server in the right window.

I dont know a decent way to send files between to servers, without using a third server/computer, which i dont suppose you know either.

The workaround would be connecting to both servers, and when the user wants to transfer the file(s), it downloaded them to the users computer and then, without the user doing anything, uploaded them to the second server.

#4379 Expected another server reply(15) : 550 can't access file. Bug report normal FileZilla Server rejected
Description

I setup a FTP backup which I admit is very big (approx 25 GB), everything work fine except for 1 file. I run the backup every night and every night this file does not get saved and I get the following message. Expected another server reply(15) : 550 can't access file. I have tried many things: renaming the file, changing the folder source and destination, creating a backup job specifically for that file, and also trying different times of day, but I always get the same error. Here are details of the setup: both computers are running Windows XP Pro, I am using the latest Filezilla server version 0.9.31, the file is of type .zip,

#4407 After successfull connection attempt the server fails to send the list of files Bug report normal FileZilla Server rejected
Description

First, the problem does seem to occur randomly, but often since the version 0.9.26 or so. I'm using the version 0.9.31. The server gets the connection attempt by the client, seems to reply correctly, until the client requests the filelist. The client never receives the list, and a timeout is the consequence.

Heres a short log of a client who encountered the problem:

answer: 150 Connection accepted answer: 226 Transfer OK command: MDTM fenster.png error: connection timed out error: directory could not be received

On my side (the server): (000001) 24.03.2009 17:17:42 - (not logged in) (93.212.190.161)> Connected, sending welcome message... (000001) 24.03.2009 17:17:42 - (not logged in) (93.212.190.161)> USER Armin (000001) 24.03.2009 17:17:42 - (not logged in) (93.212.190.161)> 331 Password required for armin (000001) 24.03.2009 17:17:42 - (not logged in) (93.212.190.161)> PASS * (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> 230 Logged on (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> SYST (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> 215 UNIX emulated by FileZilla (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> FEAT (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> 211-Features: (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> MDTM (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> REST STREAM (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> SIZE (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> MODE Z (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> MLST type*;size*;modify*; (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> MLSD (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> UTF8 (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> CLNT (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> MFMT (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> 211 End (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> PWD (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> 257 "/" is current directory. (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> TYPE I (000001) 24.03.2009 17:17:42 - armin (93.212.190.161)> 200 Type set to I (000001) 24.03.2009 17:17:43 - armin (93.212.190.161)> PASV (000001) 24.03.2009 17:17:43 - armin (93.212.190.161)> 227 Entering Passive Mode (192,168,0,2,9,96) (000001) 24.03.2009 17:17:43 - armin (93.212.190.161)> LIST (000001) 24.03.2009 17:17:43 - armin (93.212.190.161)> 150 Connection accepted (000001) 24.03.2009 17:17:43 - armin (93.212.190.161)> 226 Transfer OK (000001) 24.03.2009 17:17:43 - armin (93.212.190.161)> MDTM fenster.png (000001) 24.03.2009 17:17:43 - armin (93.212.190.161)> 213 20090321171339 (000002) 24.03.2009 17:18:09 - (not logged in) (93.212.190.161)> Connected, sending welcome message...

[Now the person tried again, but the result was the same...]

The problem doesn't occur every time, and it doesn't seem to be about specific files, as the files change, with which the problem happens. It also doesn't seem to be related to specific FTP clients, as we tried it with several, including the FileZilla Client. Sometimes it works quite well, so I suppose it has nothing to do with my personal firewall on my computer, or the NAT/firewall of my router (port 21 TCP is configured, and as I said, sometimes it works really well). In earlier versions this problem never occured, but I don't know the exact version with which I the issue began.

#4425 FTP connections stop working; Error, could not connect to server Other high FileZilla Server outdated
Description

I have been running FileZilla server for 2 years now. I recently ran into problems with it not working. This is the error I get when I try to connect to the server via the server interface.

FileZilla Server version 0.9.31 beta Copyright 2001-2009 by Tim Kosse (tim.kosse@…) Connecting to server... Error, could not connect to server Trying to reconnect in 5 seconds

When this happens, no clients can connect to the server. I never received this message until a month ago or so. An upgrade to 0.9.31 beta would not fix the problem. I am running Windows 2003 Server. No changes have been made to the server except for automatic windows updates, I didn't see anything that would affect a running FTP process/service. I am at a loss, there is nothing in any log files or any other evidence to point us in a direction. There is no antivirus or firewall software on the computer, the network is behind a firewall. If I want to test without any firewall I would just connect locally from another machine in the same network. So the firewall is not an issue.

#4426 allow unc paths Feature request normal FileZilla Server rejected
Description

Currently in order to get a unc path saved for a user's home directory I have to:

  1. create/save user with generic/normal path
  2. shutdown filezilla server service
  3. change filezilla server.xml in notepad (alter home path to unc for new user) and resave
  4. start service

The GUI server admin client doesn't seem to allow unc pathing, (locks up, freezes) and it would be nice if it could allow. If this is due to the GUI having to parse dir structure for the tree view, and this in turn causes issues with a unc path -- maybe as a first step add a feature with just a basic field to allow a unc path and not try to parse through it. As a sysadmin, I know my paths, and it would be nice to be able to paste one in without having to stop service and manually edit the xml.

#4432 Cannot Delete Certain Files From FileZilla Server Bug report normal FileZilla Server rejected
Description

We have certain files (3 or 4) that will not delete from our FTP no matter how often we try to remove them. This is the error code we get:

Command: CWD /webroot/anonymous/(!)Current Releases/ Response: 250 CWD command successful. Command: PWD Response: 257 "/webroot/anonymous/(!)Current Releases" is current directory. Command: RMD (Mecum) 1967 Camaro Cherokee Response: 550 (Mecum) 1967 Camaro Cherokee: The process cannot access the file because it is being used by another process. Status: Retrieving directory listing... Command: PASV Response: 227 Entering Passive Mode (64,82,41,123,46,65). Command: LIST Response: 125 Data connection already open; Transfer starting. Response: 226 Transfer complete. Status: Directory listing successful

#4433 folder size limit Feature request low FileZilla Server duplicate
Description

please add a option for each account to limit the max available size of folder.

#4435 New version 3.2.4 of the client is not compatible with FileZilla Server Bug report normal FileZilla Server outdated
Description

Sorry for my English, but I'm Italian

very simple problem: After upgrading on 2 computer the filezilla client 3.2.4 I receive an error connecting to the filezilla server

The connection is accepted the user and password is accepted but I receive an error trying to list the remote directory.

No problem at all connecting to other server (various type)

At the moment my working solution is install a different software as server (Win FTP server 2.3.0) It works with filezilla client, but I don’t like this solution

#4467 Unable to Un-install FileZilla Server Bug report low FileZilla Server fixed
Description

The uninstall icon is disabled - tried to us my windows XP control panel to remove - unable

PLEASE ADVISE

Thank you,

#4468 Password Change Problem in Server Bug report normal FileZilla Server rejected
Description

Situation #1: Multiple user accounts with multiple passwords. Want to change the passwords slightly.

What happens: If the same password is kept but the case changes on the letters - the server does not seem to update the password. (So abcd1234 -> ABCD1234 does not seem to change.) Instead, I have to change it to something like "a" and then change it back to "1234abcd".

Situation #2: If I change the password for someone but keep the same length, the password doesn't change on the server.

What happens: If I have abcd1234 and I change it to 1234abcd - it does not change. (Fix - same as above.)

Situation #3: If I remove the server from a system and then later on re-install it, the old settings are retained. However, they are not shown (ie: There are no accounts shown). If I try to recreate the accounts the server will sometimes say "That account already exists" even though it is not there - or - the account will have the old password.

Possible Solution: Since I'm not one of the people who are working on this project but since I do debug lots of programs; my best guess is that the server is not actually deleting the account information either when it is uninstalled or when the administrator says to delete the accounts. (I know - kind of obvious! :-) )

Anyway, just upgraded to the latest release earlier this week. (0.9.30).

Almost forgot: When the "X" is clicked on (Windows OS version) this kills the server. Could there be an option to not kill the server and instead just close the dialog? Can't tell you how many times I've accidentally clicked the "X" instead of the "-". :-)

#4478 Guard Page exception application error Bug report normal FileZilla Server fixed
Description

Using Windows XP SP3. Filezilla Server installed as a service. Software error occurs when terminating Filezilla or when shutting down the computer. No error when shut down, and is installed as an application.

Please see the attached .jpg file for the exact error message.

#4479 Automate backups Other normal FileZilla Server fixed
Description

I need to automate backups to a remote server. I am using the SSL/TLS support which will not allow me to use the regular command prompt. What command client do you recommend to use with FileZilla Server that connects through FTPS and accepts certificates automatically from the server.

#4482 2048 selection creates 2058 bits size keys Bug report normal FileZilla Server fixed
Description

It looks like when you use the Generate Certificate facility, selecting 2048 bits size will result in a 2058 bits size key.

Here's the code :

m_country.MakeUpper(); int bits = 1024; if (m_keysize == 1) bits = 2058; else if (m_keysize == 2) bits = 4096;

#4517 file list not being updated Bug report normal FileZilla Server rejected
Description

after creating a user and assigning a folder to that user, we add files to the folder. When the user logs in for the first time through the FTP client there are no files or folders listed. This happens through the firewall as well as locally on the same intranet with no firewall between the client and server. I can delete the user account and recreate it with the same home directory and the next time the user logs in with the FTP client the files show up. It seems to be an issue with Filezilla not showing updates to a folder after the user is created. We have connected with the Filezilla client as well as Windows Explorer client.

#4526 Using SSL Feature request normal FileZilla Server worksforme
Description

Can you set up FilZilla to use SSL version 3? I have a IBM AS/400 system that only uses SSL. It can not do SFTP

#4539 Treat shortcut as aliases Feature request normal FileZilla Server rejected
Description

Hello,

I think it can be great, if when we have some shortcuts on a folder, we didn't see the shortcut as a "file", but as the real file (or the real folder).

so in fact we will see shortcut as aliases.

#4592 choice of manual or auto updates Feature request normal FileZilla Server rejected
Description

It would be nice to have the choice of automatic or manual updates.

Since it's a server, it should be up to the admin (could be on a desktop), but easier updates would be nice.

#4600 Attack during identification process ? Bug report high FileZilla Server outdated
Description

Hi,

I have installed FZS 0.9.31 on a windows XP SP3 box a month ago for a private use: there is a small number of well known clients. And during this month, FZS has going crazy several times. CPU skyrockets to 100% with someone connected but no user identified in the list of users in the admin console.

It always follows the same scheme: someone tries to authentify 2 or 3 times with the same username (USER command), without giving any password (no PASS command) and FZS go crazy. Kicking or banning user make FZS go back to normal.

(000001) 08/06/2009 10:25:14 - (not logged in) (82.114.242.60)> USER Administrator (000001) 08/06/2009 10:25:14 - (not logged in) (82.114.242.60)> 331 Password required for administrator (000001) 08/06/2009 10:25:15 - (not logged in) (82.114.242.60)> USER Administrator (000001) 08/06/2009 10:25:15 - (not logged in) (82.114.242.60)> 331 Password required for administrator (000001) 08/06/2009 19:01:35 - (not logged in) (82.114.242.60)> 421 Kicked by Administrator (000001) 08/06/2009 19:01:35 - (not logged in) (82.114.242.60)> disconnected.

(000005) 12/06/2009 02:13:44 - (not logged in) (64.69.35.115)> USER Administrator (000005) 12/06/2009 02:13:44 - (not logged in) (64.69.35.115)> 331 Password required for administrator (000005) 12/06/2009 02:13:44 - (not logged in) (64.69.35.115)> USER Administrator (000005) 12/06/2009 02:13:44 - (not logged in) (64.69.35.115)> 331 Password required for administrator (000005) 12/06/2009 02:13:44 - (not logged in) (64.69.35.115)> USER Administrator (000005) 12/06/2009 02:13:44 - (not logged in) (64.69.35.115)> 331 Password required for administrator (000005) 12/06/2009 07:53:51 - (not logged in) (64.69.35.115)> 421 Kicked by Administrator (000005) 12/06/2009 07:53:51 - (not logged in) (64.69.35.115)> could not send reply, disconnected. (000005) 12/06/2009 07:53:51 - (not logged in) (64.69.35.115)> disconnected.

I have played with almost all the options of FZS without any succes. And I can't sum up my tries here but they have had no effects. Then, I have tried the following workarounds:

  • create a simple "Administrator" disabled account - not working
  • create a simple "Administrator" enabled account with password - not working
  • create a simple "Administrator" enabled account with password and SSL required - working

000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> USER Administrator (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> 530 SSL required (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> USER Administrator (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> 530 SSL required (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> USER Administrator (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> 530 SSL required (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> USER Administrator (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> 530 SSL required (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> USER Administrator (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> 530 SSL required (000015) 19/06/2009 05:26:39 - (not logged in) (213.194.149.3)> disconnected.

But after this, the "attacker" change the user from "Administrator" to "oracle" and here we go again ...

(000016) 21/06/2009 15:09:32 - (not logged in) (203.59.222.90)> USER oracle (000016) 21/06/2009 15:09:32 - (not logged in) (203.59.222.90)> 331 Password required for oracle (000016) 21/06/2009 15:09:33 - (not logged in) (203.59.222.90)> USER oracle (000016) 21/06/2009 15:09:33 - (not logged in) (203.59.222.90)> 331 Password required for oracle (000016) 21/06/2009 15:09:33 - (not logged in) (203.59.222.90)> USER oracle (000016) 21/06/2009 15:09:33 - (not logged in) (203.59.222.90)> 331 Password required for oracle (000016) 22/06/2009 09:36:09 - (not logged in) (203.59.222.90)> 421 Kicked by Administrator (000016) 22/06/2009 09:36:09 - (not logged in) (203.59.222.90)> disconnected.

I can't create an account for each potential name that hacker-maniacs out there will try. So if someone has a solution.

I don't know if is is a security bug and if it concerns others versions of FZS.

regards

#4609 Filezilla Server does not accept connections on server startup or reboot Bug report normal FileZilla Server fixed
Description

I have installed 0.9.3.1 beta on Windows Server 2003. I have it running as a system service. After install and setup I had no issues connecting with either an FTP client or via the FileZilla Server Administration Console.

After rebooting the server, FileZilla Server doesn't accept connections from the administration console. The administration console run locally shows that it has connected to the server and then says "connected, waiting for authentication"

It stops there.

If I run the administration console on another machine it can't connect to the server at all.

This can be resolved if I go into Task Manager on the server and kill the FileZilla Server.exe process, then start the FileZilla Server service either by going to services.msc or using the shortcut in the start menu. After I restarting the service connections are accepted normally from FTP clients, the local admin console, and an admin console run on a another computer.

IIS is installed on the server but all the services related to it are set to manual and are not running (IIS Admin Service, FTP Publishing Service, HTTP SSL, World Wide Web Publishing Service). When I first discovered this problem I thought these services were at fault so I set them to manual and stopped them but it did not resolve the issue.

We also have McAfee antivirus 8.5i installed and running and windows system firewall is off.

#4610 New Feature - Would like to have a 64Bit version of the Server Feature request normal FileZilla Server wontfix
Description

This days that more and more hardware is 64Bit and starting with Vista and Windows 7 more and more users will move to 64Bit operating systems. I think that a 64Bit of FileZila should exist

#4618 Local IP send to client in passive mode, SSL and base SOCKS proxy Bug report normal FileZilla Server rejected
Description

When using SSL (explicit or implicit) connection through SOCKS proxy server returns local IP address in the PORT command instead of the address from primary client connection. Switching SSL off results in normal PORT command behavior.

Batch Modify
Note: See TracBatchModify for help on using batch modify.
Note: See TracQuery for help on using queries.