Wireshark

  • Riverbed Technology
  • WinPcap
SHARKFEST '13 - Wireshark Developer and User Conference - June 16-19, 2013 - UC Berkeley
  • Wireshark
    • About
    • Download
    • Blog
  • Get Help
    • Ask a Question
    • FAQs
    • Documentation
    • Mailing Lists
    • Online Tools
    • Wiki
    • Bug Tracker
  • Develop
    • Get Involved
    • Developer's Guide
    • Browse the Code
    • Latest Builds

Wireshark-users: Re: [Wireshark-users] FTP analysis

Date Index Thread Index Other Months All Mailing Lists
Date Prev Date Next Thread Prev Thread Next


From: "Mohan Radhakrishnan" <mohanr@xxxxxxxxx>
Date: Fri, 4 Sep 2009 10:25:06 +0530

We are the client.
 
Client IP:3039                     Server IP:21
Server IP:20                        Client IP:5001
 
I see the above in Ethernet Peek. The data is received when I check the packets in the sniffer but the Windows FTP client hangs. It does not complete the save.
 
I am using the Windows FTP client because my Visa EA server does not allow any normal commands to be executed. Does FileZilla have a command-line client ?
 
 
Thanks,
Mohan


From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Phillips, Christopher M
Sent: Thursday, September 03, 2009 8:40 PM
To: Community support list for Wireshark
Subject: Re: [Wireshark-users] FTP analysis

Sounds like active/passive FTP problem.

Windows FTP uses active mode by default.

 

Active mode can often have trouble working through firewalls/routers.

 

When you have connected to the ftp site type the command ‘literal pasv’ which should switch the client into passive mode.

To make permanent default see here:

http://compnetworking.about.com/cs/novellgroupwise/ht/setpassiveftpie.htm

 

Better still use a decent ftp client like filezilla

http://filezilla-project.org/download.php

 

Also remember if your not using sftp or scp the traffic or the password to the ftp site is not encrypted……

 

-Chris

 

-----Original Message-----
From: wireshark-users-bounces@xxxxxxxxxxxxx [mailto:wireshark-users-bounces@xxxxxxxxxxxxx] On Behalf Of Mohan Radhakrishnan
Sent: 03 September 2009 10:06
To: wireshark-users@xxxxxxxxxxxxx
Subject: [Wireshark-users] FTP analysis

 

Hi,

          I have a ftp connection to a server and I am trying to analyze why even though wireshark shows that the files are transferrred successfully Windows ftp does not complete the transfer. How do I go about analyzing the problem ?

 

Wireshark shows

 

226 Transfer complete successfully.

 

but the windows ftp client does not save the file. It hangs. So what was working a few days back is now hanging. What type of analysis should I run ?

 

 

Thanks,

Mohan

 

  • References:
    • Re: [Wireshark-users] FTP analysis
      • From: Phillips, Christopher M
  • Prev by Date: [Wireshark-users] Counting the number of duplcate packets
  • Next by Date: Re: [Wireshark-users] aggregating packages in one messages
  • Previous by thread: Re: [Wireshark-users] FTP analysis
  • Next by thread: [Wireshark-users] aggregating packages in one messages
  • Index(es):
    • Date
    • Thread

Wireshark and the "fin" logo are registered trademarks of the Wireshark Foundation