Go Back   HowtoForge Forums | HowtoForge - Linux Howtos and Tutorials > ISPConfig 3 > Installation/Configuration

Do you like HowtoForge? Please consider supporting us by becoming a subscriber.
Reply
 
Thread Tools Display Modes
  #1  
Old 23rd January 2013, 05:23
Fluotonic Fluotonic is offline
Junior Member
 
Join Date: Jan 2013
Posts: 27
Thanks: 4
Thanked 0 Times in 0 Posts
Default Pure-FTPd (on Debian 6.0.2): port 21 desperately closed...

Hi there,

I just got a preinstalled server (Debian Squeeze with ISPConfig 3) and
I spent about 2 days searching for a solution but I just can't seem to find it...

Here is my problem...
On ISPConfig, I created a site, and then an FTP account butwhen I try to use it, the connection is refused. I'm not surprised now because the port 21 seems to be closed!

If I do netstat -tap | grep ftp, I got NOTHING!

If I do dpkg -l | grep -i "ftp", I get this :

Code:
ii  ftp                                 0.17-23                      The FTP client
ii  pure-ftpd-common                    1.0.28-3                     Pure-FTPd FTP server (Common Files)
ii  pure-ftpd-mysql                     1.0.28-3+b1                  Secure and efficient FTP server with MySQL user authentication
So the FTP seems to be there, right?

I don't know if you have everything to help me but don't hesitate to ask. This problem is driving me nuts!

Thanks in advance!

Vincent


EDIT 1:
I forgot to say I can access the server through FTP with the root account (SFTP on port 22) only.

Last edited by Fluotonic; 23rd January 2013 at 09:11.
Reply With Quote
Sponsored Links
  #2  
Old 23rd January 2013, 06:35
Fluotonic Fluotonic is offline
Junior Member
 
Join Date: Jan 2013
Posts: 27
Thanks: 4
Thanked 0 Times in 0 Posts
Default

For information, my jail.local (/etc/fail2ban/jail.local) looks like this:

Code:
[pureftpd]

enabled  = true
port     = ftp
filter   = pureftpd
logpath  = /var/log/syslog
maxretry = 3


[dovecot-pop3imap]

enabled = true
filter = dovecot-pop3imap
action = iptables-multiport[name=dovecot-pop3imap, port="pop3,pop3s,imap,imaps", protocol=tcp]
logpath = /var/log/mail.log
maxretry = 5
And when I do this iptables -L -n, I get this...
Code:
Chain INPUT (policy ACCEPT)
target     prot opt source               destination         
fail2ban-dovecot-pop3imap  tcp  --  0.0.0.0/0            0.0.0.0/0           multiport dports 110,995,143,993 
fail2ban-ssh  tcp  --  0.0.0.0/0            0.0.0.0/0           multiport dports 22 

Chain FORWARD (policy ACCEPT)
target     prot opt source               destination         

Chain OUTPUT (policy ACCEPT)
target     prot opt source               destination         

Chain fail2ban-dovecot-pop3imap (1 references)
target     prot opt source               destination         
RETURN     all  --  0.0.0.0/0            0.0.0.0/0           

Chain fail2ban-ssh (1 references)
target     prot opt source               destination         
RETURN     all  --  0.0.0.0/0            0.0.0.0/0
I hope this is relevant and it will help :-)

Thanks!

Last edited by Fluotonic; 23rd January 2013 at 06:39.
Reply With Quote
  #3  
Old 23rd January 2013, 09:33
till till is online now
Super Moderator
 
Join Date: Apr 2005
Location: Lüneburg, Germany
Posts: 37,015
Thanks: 840
Thanked 5,651 Times in 4,461 Posts
Default

Is this a virtual server? Ifyes, please post the output of:

cat /proc/user_beancounters

Did you try to restart pure ftpd?

Quote:
I forgot to say I can access the server through FTP with the root account (SFTP on port 22) only.
SFTP is a ssh protocol, so not ftp even if the name might imply this so sftp is provided by the openssh daemon.
__________________
Till Brehm
--
Get ISPConfig support and the ISPConfig 3 manual from ispconfig.org.
Reply With Quote
  #4  
Old 23rd January 2013, 09:49
Fluotonic Fluotonic is offline
Junior Member
 
Join Date: Jan 2013
Posts: 27
Thanks: 4
Thanked 0 Times in 0 Posts
Default

Thanks for your answer Till!

cat /proc/user_beancounters sends this output:

Code:
cat: /proc/user_beancounters: Aucun fichier ou dossier de ce type
...means "no such file or directory"

Sorry for my error, I didn't know this about SFTP :-)
So I suppose no FTP is working....

Also, I tried o restart pure-ftpd this way :
Code:
/etc/init.d/pure-ftpd-mysql restart
...but it doesn't change anything.

Thank you VERY MUCH for your kind help!

Vincent
Reply With Quote
  #5  
Old 23rd January 2013, 09:54
Fluotonic Fluotonic is offline
Junior Member
 
Join Date: Jan 2013
Posts: 27
Thanks: 4
Thanked 0 Times in 0 Posts
Default

Sorry I forgot to mention I'm on a dedicated server. So I suppose it's not a "virtual" server. Am I correct?

Sorry my ignorance, I'm really willing to learn though. The more I discover it, the more I love Linux and ISPConfig!

Thanks again!
Reply With Quote
  #6  
Old 23rd January 2013, 09:54
till till is online now
Super Moderator
 
Join Date: Apr 2005
Location: Lüneburg, Germany
Posts: 37,015
Thanks: 840
Thanked 5,651 Times in 4,461 Posts
Default

Quote:
Sorry for my error, I didn't know this about SFTP :-)
No problem at all Thats a common confusion and what it makes even worse is that "FTPS" (with the S at the end) is FTP again.

Quote:
So I suppose no FTP is working....
Yes. Thats my guess too. According to your netstat output, there must be a startup error.

Please check /var/log/syslog and the logs in /var/log/pure-ftpd/ for pureftpd errors. e.g. with:

grep ftp /var/log/syslog
__________________
Till Brehm
--
Get ISPConfig support and the ISPConfig 3 manual from ispconfig.org.
Reply With Quote
  #7  
Old 23rd January 2013, 09:58
Fluotonic Fluotonic is offline
Junior Member
 
Join Date: Jan 2013
Posts: 27
Thanks: 4
Thanked 0 Times in 0 Posts
Default

Oh waw, I think we've got something?!

grep ftp /var/log/syslog
Code:
 
Jan 22 19:25:56 ks4003865 pure-ftpd: (?@?) [ERROR] Sorry, but that file doesn't exist: [/etc/ssl/private/pure-ftpd.pem]
Jan 22 19:36:08 ks4003865 pure-ftpd: (?@?) [ERROR] Sorry, but that file doesn't exist: [/etc/ssl/private/pure-ftpd.pem]
Jan 22 19:45:20 ks4003865 pure-ftpd: (?@?) [ERROR] Sorry, but that file doesn't exist: [/etc/ssl/private/pure-ftpd.pem]
Jan 22 21:21:43 ks4003865 pure-ftpd: (?@?) [ERROR] Sorry, but that file doesn't exist: [/etc/ssl/private/pure-ftpd.pem]
Jan 22 21:22:34 ks4003865 pure-ftpd: (?@?) [ERROR] Sorry, but that file doesn't exist: [/etc/ssl/private/pure-ftpd.pem]
Jan 22 21:47:48 ks4003865 pure-ftpd: (?@?) [ERROR] Sorry, but that file doesn't exist: [/etc/ssl/private/pure-ftpd.pem]
Reply With Quote
  #8  
Old 23rd January 2013, 10:00
Fluotonic Fluotonic is offline
Junior Member
 
Join Date: Jan 2013
Posts: 27
Thanks: 4
Thanked 0 Times in 0 Posts
Default

It seems to be related to the SSL certificate I installed recently!!!

I followed this tutorial: http://www.howtoforge.com/securing-y...-from-startssl

What do you think?
Reply With Quote
  #9  
Old 23rd January 2013, 10:07
Fluotonic Fluotonic is offline
Junior Member
 
Join Date: Jan 2013
Posts: 27
Thanks: 4
Thanked 0 Times in 0 Posts
Default

OK so I just checked and the file does exist but it's a symlink. When I open it, I have the complete certificate. So I'm not sure the problem is coming from there...

Any idea?
Reply With Quote
  #10  
Old 23rd January 2013, 10:11
till till is online now
Super Moderator
 
Join Date: Apr 2005
Location: Lüneburg, Germany
Posts: 37,015
Thanks: 840
Thanked 5,651 Times in 4,461 Posts
 
Default

The ssl cert issue is most likely the reason. Please post the output of:

ls -la /usr/local/ispconfig/interface/ssl/
ls -la /etc/ssl/private/
__________________
Till Brehm
--
Get ISPConfig support and the ISPConfig 3 manual from ispconfig.org.
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Need help with ISPConfig Mail and Squirrelmail m.xander Installation/Configuration 109 3rd February 2012 01:15
strange fail2ban behaviour > doesn't ban specific IP Djamu Server Operation 2 13th January 2012 03:29
Mail Question: installed smf forum on centos perfect server setup with ispconfig happz Installation/Configuration 7 22nd August 2008 14:15
Question about Virtual Hosting With Proftpd And MySQL (Incl. Quota) On Debian Etch ikkem HOWTO-Related Questions 30 26th February 2008 20:38
How to install BFD (Brute Force Detection) domino Tips/Tricks/Mods 9 31st March 2006 23:40


All times are GMT +2. The time now is 22:25.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2014, vBulletin Solutions, Inc.