[caiu] NET Virtua - Bloqueio de Portas para FTP

Marcos Tadeu marcos em telecom.uff.br
Terça Novembro 19 11:16:39 BRST 2013


Vou fazer um laboratório e te tigo.

1) Sintomas com duas possíveis causas: bug no firmware dos modens/NET no 
FTP/NAT.
Mas, se você pega IP público e continua, sobra a segunda:

2) MTU. Verifique forçando no seu linux:
-t mangle -o ethxx -A FORWARD -p tcp -m tcp --tcp-flags SYN,RST SYN -j 
TCPMSS --clamp-mss-to-pmtu
ethxx á placa onde está o NET.

-- 
Marcos Tadeu
TET/UFF
Eng. de Telecomunicações

On 11/18/2013 01:48 PM, Rafael Ribeiro wrote:
> Já sim, ele conecta, tanto passivo quanto ativo, mas o erro de tempo na
> obtenção das pastas é igual.
> Fato este que não ocorre, via GVT.
> É realmente algo ligado ao Virtua.
>
>
> Em 18 de novembro de 2013 13:43, Eduardo Rigler <erigler at gmail.com>escreveu:
>
>> Já vi esse problema em clientes FTP no caso de limitação de portas
>> passivas... talvez algo "obscuro" no modem estejam te ~trollando (por mais
>> que tenha testado em mais de um), ou quem sabe seja sacanagem da NET mesmo.
>>
>> Devo perguntar se testou forçando o cliente a conectar apenas ativamente ou
>> vc já testou assim também? :)
>>
>>
>> []'s
>>
>>
>>
>> Em 18 de novembro de 2013 13:32, Rafael Ribeiro
>> <rafaelribeiro.sp at gmail.com>escreveu:
>>
>>> As mensagens são idênticas no Filezilla, em ambos os casos.
>>> A única coisa diferente é que no Virtua, recebemos a mensagem: Tempo
>>> Excedido na obtenção das pastas. Ai você tenta umas três, quatro vezes, e
>>> funciona.
>>>
>>>
>>> Em 18 de novembro de 2013 13:28, Evandro Maciel <ev.maciel at gmail.com
>>>> escreveu:
>>>> Rafael,
>>>>
>>>> As msg dos servidores ftp, em cada conexão (gvt e virtua) diferem ? Se
>>>> sim, pode colá-las aqui pra gente ?
>>>>
>>>> Um abraço,
>>>> Evandro
>>>>
>>>> Enviado por dispositivo móvel.
>>>>
>>>> Em 18/11/2013, às 13:19, Rafael Ribeiro <rafaelribeiro.sp at gmail.com>
>>>> escreveu:
>>>>
>>>>> Então Eduardo,
>>>>>
>>>>> Qualquer FTP, seja nosso ou de cliente, hospedado em qualquer
>> servidor
>>>> por
>>>>> ai.
>>>>> O resultado é idêntico, via Virtua => Problema / via GVT => Funciona
>>>>> perfeitamente.
>>>>>
>>>>> Att,
>>>>> Rafael
>>>>>
>>>>>
>>>>> Em 18 de novembro de 2013 13:15, Eduardo Rigler <erigler at gmail.com
>>>>> escreveu:
>>>>>
>>>>>> Rafael,
>>>>>>
>>>>>> Me perdoe se estiver sendo repetitivo, mas é generalizado? Isto é,
>>>> acontece
>>>>>> com mais de um servidor FTP?
>>>>>>
>>>>>> Por acaso vc administra o servidor FTP onde rola o problema?
>> Pergunto
>>>> pois
>>>>>> de repente poderíamos fazer testes por outros links virtua pelo
>>>> Brasil...
>>>>>> quem sabe não tenha a ver com seu tipo de link/modem (por mais que
>>>>>>>> tinham trocado por outros)....
>>>>>>
>>>>>>
>>>>>> []'s
>>>>>>
>>>>>>
>>>>>>
>>>>>> Em 18 de novembro de 2013 13:11, Rafael Ribeiro
>>>>>> <rafaelribeiro.sp at gmail.com>escreveu:
>>>>>>
>>>>>>> Gente, vamos deixar claro, o problema ocorre DIRETO NO MODEM, pega
>> o
>>>> cabo
>>>>>>> do modem, e liga direto no PC .. esquece a rede interna, ou
>> qualquer
>>>>>> outro
>>>>>>> equipamento intermediário.
>>>>>>>
>>>>>>> Fato é, conecta via VIRTUA, o ftp fica um lixo, conecta via GVT,
>>>> funciona
>>>>>>> normalmente.
>>>>>>>
>>>>>>>
>>>>>>> Em 18 de novembro de 2013 13:03, Ataliba Teixeira <
>> ataliba at gmail.com
>>>>>>>> escreveu:
>>>>>>>> Já tentou implementar um proxy ftp para ver se ele resolve o
>>> problema
>>>> ?
>>>>>>>>
>>>>>>>> Ataliba Teixeira
>>>>>>>> Analista de Sistemas ( SysAdmin Linux/Unix -  Information Security
>>>>>>>> Enthusiast )
>>>>>>>> WEB : http://www.ataliba.eti.br
>>>>>>>> Quem vigiará os guardiões ?
>>>>>>>>
>>>>>>>>
>>>>>>>> 2013/11/18 Rafael Ribeiro <rafaelribeiro.sp at gmail.com>
>>>>>>>>
>>>>>>>>> Já sim, o problema não ocorre apenas com nossos servidores web.
>>>>>>>>> Atendemos clientes de fora também, e quando precisávamos conectar
>>> no
>>>>>>> FTP
>>>>>>>>> era um parto.
>>>>>>>>>
>>>>>>>>> Agora com a GVT, acabou-se os problemas, mas eu realmente quero
>>>>>>> entender
>>>>>>>> o
>>>>>>>>> que ocorre com o Virtua.
>>>>>>>>>
>>>>>>>>>
>>>>>>>>> Em 18 de novembro de 2013 12:55, Rafael Ribeiro
>>>>>>>>> <rafaelribeiro.sp at gmail.com>escreveu:
>>>>>>>>>
>>>>>>>>>> Eduardo, tenho um load balance em Linux, que trabalha com 4
>> placas
>>>>>> de
>>>>>>>>>> rede, recebendo os links de internet, e disponibilizando-os para
>>>>>>> nossa
>>>>>>>>> rede
>>>>>>>>>> internat.
>>>>>>>>>>
>>>>>>>>>> Mas, volto a dizer, o problema ocorre, mesmo se ligado direto no
>>>>>>> modem,
>>>>>>>>>> pego meu laptop, ligo no modem do VIRTUA, e tenho problemas com
>> o
>>>>>>> FTP.
>>>>>>>>>> Ligo o da GVT, direto no meu laptop, sem passar por nada, e
>>>>>> funciona
>>>>>>>>>> normalmente.
>>>>>>>>>>
>>>>>>>>>>
>>>>>>>>>>
>>>>>>>>>>
>>>>>>>>>> Em 18 de novembro de 2013 12:52, Eduardo Schoedler <
>>>>>>> listas at esds.com.br
>>>>>>>>>> escreveu:
>>>>>>>>>>
>>>>>>>>>> Rafael,
>>>>>>>>>>> Como tu faz essa troca? Desliga um e liga o outro (os gateways
>>>>>> tem o
>>>>>>>>> mesmo
>>>>>>>>>>> ip)? ou tu tem algum load balance?
>>>>>>>>>>>
>>>>>>>>>>> Abs.
>>>>>>>>>>>
>>>>>>>>>>>
>>>>>>>>>>>
>>>>>>>>>>>
>>>>>>>>>>> Em 18 de novembro de 2013 12:49, Rafael Ribeiro
>>>>>>>>>>> <rafaelribeiro.sp at gmail.com>escreveu:
>>>>>>>>>>>
>>>>>>>>>>>> Já sim, de todas as formas, ocorre o mesmo.
>>>>>>>>>>>> Como disse, basta ligar o link da GVT, seja dentro de nossa
>> rede
>>>>>>>>>>> interna,
>>>>>>>>>>>> ou diretamente no modem, os problemas acabam.
>>>>>>>>>>>> Portanto, não é nenhum problema de configuração da nossa rede,
>>>>>>>>>>> computadores
>>>>>>>>>>>> ou outros adendos.
>>>>>>>>>>>>
>>>>>>>>>>>>
>>>>>>>>>>>> Em 18 de novembro de 2013 12:44, Ivan Carlos <
>>>>>> icarlos at icarlos.net
>>>>>>>>>>>> escreveu:
>>>>>>>>>>>>
>>>>>>>>>>>>> Já fez um teste conectando diretamente ao modem, sem Nat?
>>>>>>>>>>>>>
>>>>>>>>>>>>> Ivan Carlos
>>>>>>>>>>>>> CISO, Consultant
>>>>>>>>>>>>> +55 (11) 98112-0666
>>>>>>>>>>>>> www.icarlos.net
>>>>>>>>>>>>> On Nov 18, 2013 12:42 PM, "LinkOficial" <
>>>>>>>> contato at linkoficial.com.br
>>>>>>>>>>>>> wrote:
>>>>>>>>>>>>>
>>>>>>>>>>>>>> Reafirmando o que o Rafael Ribeiro falou, o uso é como ftp
>>>>>>>>> cliente,
>>>>>>>>>>> não
>>>>>>>>>>>>> ftp
>>>>>>>>>>>>>> servidor.
>>>>>>>>>>>>>> Seria o upload para servidores de ftp.
>>>>>>>>>>>>>>
>>>>>>>>>>>>>>
>>>>>>>>>>>>>> Em 18 de novembro de 2013 12:34, Rafael Ribeiro - iPhone <
>>>>>>>>>>>>>> rafaelribeiro.sp at gmail.com> escreveu:
>>>>>>>>>>>>>>
>>>>>>>>>>>>>>> Não é SERVIDOR, é cliente!!!
>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>> Rafael Ribeiro
>>>>>>>>>>>>>>> Sent by iPhone
>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>> Em 18/11/2013, às 10:40, Márcio Merlone <
>>>>>>>>> marcio.merlone at a1.ind.br
>>>>>>>>>>>>>>> escreveu:
>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>> Em 18-11-2013 09:48, Rafael Ribeiro escreveu:
>>>>>>>>>>>>>>>>> Tenho NET Virtua 100 Mb, e meus funcionários estavam
>>>>>>>>> reclamando
>>>>>>>>>>>>>>>>> diariamente, que havia uma grande instabilidade para
>>>>>>>> conexões
>>>>>>>>>>> FTP.
>>>>>>>>>>>>>>>>> A principio pensamos que o problema seria relacionado
>>>>>> aos
>>>>>>>>>>>> servidores
>>>>>>>>>>>>>>> web,
>>>>>>>>>>>>>>>>> então, verificamos as configurações e nada foi
>>>>>> encontrado
>>>>>>>> de
>>>>>>>>>>>> errado.
>>>>>>>>>>>>>>>>> Então, eu pedi um LINK GVT de 15 Mb, o qual fora
>>>>>>> instalado
>>>>>>>> a
>>>>>>>>> 30
>>>>>>>>>>>>> dias,
>>>>>>>>>>>>>> e
>>>>>>>>>>>>>>>>> desde então, os problemas sumiram.
>>>>>>>>>>>>>>>>> E é fato, que basta retornar o LINK NET, que o problema
>>>>>>> de
>>>>>>>>> FTP,
>>>>>>>>>>>>>> retorna
>>>>>>>>>>>>>>> a
>>>>>>>>>>>>>>>>> acontecer ... ligamos o LINK GVT e opera normalmente.
>>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>>> Me parece ser algum tipo de bloqueio ou limitação de
>>>>>>>> tráfego
>>>>>>>>>>> feita
>>>>>>>>>>>>>> pela
>>>>>>>>>>>>>>> NET.
>>>>>>>>>>>>>>>> Nunca passei, mas considerando que NetVirtua é conexão
>>>>>>>>>>> destinada a
>>>>>>>>>>>>> uso
>>>>>>>>>>>>>>> doméstico não espere muita coisa em qualidade de serviço
>>>>>>> mais
>>>>>>>>>>>>>> profissional
>>>>>>>>>>>>>>> como um servidor FTP. Use ele pra baixar torrents, ler
>>>>>>>> e-mails,
>>>>>>>>>>> ver
>>>>>>>>>>>>>>> notícias, nada mais que isso. Tentar rodar qualquer coisa
>>>>>>>> séria
>>>>>>>>>>> neste
>>>>>>>>>>>>>> tipo
>>>>>>>>>>>>>>> de conexão não vale o desgaste, stress e má qualidade do
>>>>>> seu
>>>>>>>>>>> serviço
>>>>>>>>>>>>>>> prestado sobre este tipo de link.
>>>>>>>>>>>>>>>> A propósito, o GVT é um ADSL residencial também, só pra
>>>>>> me
>>>>>>>>>>>>> contrariar?
>>>>>>>>>>>>>> :)
>>>>>>>>>>>>>>>> Sds.
>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>> --
>>>>>>>>>>>>>>>> *Marcio Merlone*
>>>>>>>>>>>>>>>> TI - Administrador de redes
>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>> *A1 Engenharia - Unidade Corporativa*
>>>>>>>>>>>>>>>> Fone:    +55 41 3616-3797
>>>>>>>>>>>>>>>> Cel:    +55 41 9689-0036
>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>> http://www.a1.ind.br/ <http://www.a1.ind.br>
>>>>>>>>>>>>>>>> _______________________________________________
>>>>>>>>>>>>>>>> caiu mailing list
>>>>>>>>>>>>>>>> caiu at eng.registro.br
>>>>>>>>>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>>>>>>>>> _______________________________________________
>>>>>>>>>>>>>>> caiu mailing list
>>>>>>>>>>>>>>> caiu at eng.registro.br
>>>>>>>>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>>>>>>>>
>>>>>>>>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>>>>>>>>
>>>>>>>>>>>>>>
>>>>>>>>>>>>>> --
>>>>>>>>>>>>>>
>>>>>>>>>>>>>> At.
>>>>>>>>>>>>>> Jardel
>>>>>>>>>>>>>> _______________________________________________
>>>>>>>>>>>>>> caiu mailing list
>>>>>>>>>>>>>> caiu at eng.registro.br
>>>>>>>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>>>>>>>
>>>>>>>>>>>>>>
>>>>>>>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>>>>>>>
>>>>>>>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>>>>>>> _______________________________________________
>>>>>>>>>>>>> caiu mailing list
>>>>>>>>>>>>> caiu at eng.registro.br
>>>>>>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>>>>>>
>>>>>>>>>>>>>
>>>>>>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>>>>>>
>>>>>>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>>>>>>
>>>>>>>>>>>>
>>>>>>>>>>>> --
>>>>>>>>>>>> Atenciosamente
>>>>>>>>>>>>
>>>>>>>>>>>> Rafael Ribeiro
>>>>>>>>>>>> _______________________________________________
>>>>>>>>>>>> caiu mailing list
>>>>>>>>>>>> caiu at eng.registro.br
>>>>>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>>>>>
>>>>>>>>>>>>
>>>>>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>>>>>
>>>>>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>>>>>
>>>>>>>>>>>
>>>>>>>>>>> --
>>>>>>>>>>> Eduardo Schoedler
>>>>>>>>>>> _______________________________________________
>>>>>>>>>>> caiu mailing list
>>>>>>>>>>> caiu at eng.registro.br
>>>>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>>>>
>>>>>>>>>>>
>>>>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>>>>
>>>>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>>>>
>>>>>>>>>>
>>>>>>>>>> --
>>>>>>>>>> Atenciosamente
>>>>>>>>>>
>>>>>>>>>> Rafael Ribeiro
>>>>>>>>>
>>>>>>>>>
>>>>>>>>> --
>>>>>>>>> Atenciosamente
>>>>>>>>>
>>>>>>>>> Rafael Ribeiro
>>>>>>>>> _______________________________________________
>>>>>>>>> caiu mailing list
>>>>>>>>> caiu at eng.registro.br
>>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>>
>>>>>>>>>
>>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>>
>>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>> _______________________________________________
>>>>>>>> caiu mailing list
>>>>>>>> caiu at eng.registro.br
>>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>>
>>>>>>>>
>>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>>
>>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>>>
>>>>>>>
>>>>>>> --
>>>>>>> Atenciosamente
>>>>>>>
>>>>>>> Rafael Ribeiro
>>>>>>> _______________________________________________
>>>>>>> caiu mailing list
>>>>>>> caiu at eng.registro.br
>>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>>
>>>>>>>
>>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>>
>>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>> _______________________________________________
>>>>>> caiu mailing list
>>>>>> caiu at eng.registro.br
>>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>>
>>>>>>
>>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>>
>>>>>> https://eng.registro.br/mailman/options/caiu
>>>>>
>>>>>
>>>>> --
>>>>> Atenciosamente
>>>>>
>>>>> Rafael Ribeiro
>>>>> _______________________________________________
>>>>> caiu mailing list
>>>>> caiu at eng.registro.br
>>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>>
>>>>>
>>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>>
>>>>> https://eng.registro.br/mailman/options/caiu
>>>> _______________________________________________
>>>> caiu mailing list
>>>> caiu at eng.registro.br
>>>> https://eng.registro.br/mailman/listinfo/caiu
>>>>
>>>>
>>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>>
>>>> https://eng.registro.br/mailman/options/caiu
>>>>
>>>
>>>
>>> --
>>> Atenciosamente
>>>
>>> Rafael Ribeiro
>>> _______________________________________________
>>> caiu mailing list
>>> caiu at eng.registro.br
>>> https://eng.registro.br/mailman/listinfo/caiu
>>>
>>>
>>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>>
>>> https://eng.registro.br/mailman/options/caiu
>>>
>> _______________________________________________
>> caiu mailing list
>> caiu at eng.registro.br
>> https://eng.registro.br/mailman/listinfo/caiu
>>
>>
>> --> PARA SAIR DA LISTA SIGA AS INSTRUÇÕES em:
>>
>> https://eng.registro.br/mailman/options/caiu
>>
>
>



More information about the caiu mailing list