<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Check Point FTP server listening on SSH Port in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89554#M17951</link>
    <description>&lt;P&gt;Hi Hristo,&lt;/P&gt;&lt;P&gt;Thanks for the response.&amp;nbsp; Interestingly enough, it shows that sshd is listening (screen shot attached).&lt;/P&gt;&lt;P&gt;-Ruan&lt;/P&gt;</description>
    <pubDate>Tue, 23 Jun 2020 12:01:17 GMT</pubDate>
    <dc:creator>Ruan_Kotze</dc:creator>
    <dc:date>2020-06-23T12:01:17Z</dc:date>
    <item>
      <title>Check Point FTP server listening on SSH Port</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89548#M17949</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;We recently picked up an issue where we couldn't establish SSH connections to our gateways anymore.&amp;nbsp; I confirmed policies were in place to allow SSH connections from our jumpbox, also the jumpbox is confirmed to be a trusted host.&lt;/P&gt;&lt;P&gt;As part of troubleshooting I did a telnet to the gateway IP on port 22 and it responded with "220 Check Point FireWall-1 Secure FTP server".&amp;nbsp; I compared this to another working gateway, which responded with "SSH-2.0-OpenSSH_7.8".&amp;nbsp; Why would an FTP server be listening on the SSH port?&lt;/P&gt;&lt;P&gt;I did some research, and apparently this can be caused by a combination of having a FTP resource defined and using that resource in a policy.&amp;nbsp; This is not the case for me.&amp;nbsp; I also confirmed that&amp;nbsp;fwauthd.conf has FTP listening on TCP 21.&lt;/P&gt;&lt;P&gt;I've got a ticket open with TAC for this, but was wondering if anyone else ran across this.&amp;nbsp; I'm running R80.40 Take 48 on the affected gateways.&lt;/P&gt;&lt;P&gt;Thanks,&lt;BR /&gt;Ruan&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2020 10:47:00 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89548#M17949</guid>
      <dc:creator>Ruan_Kotze</dc:creator>
      <dc:date>2020-06-23T10:47:00Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point FTP server listening on SSH Port</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89549#M17950</link>
      <description>&lt;P&gt;Open terminal connection from Web Portal and run this command to check what is listening on port 22:&lt;/P&gt;
&lt;P&gt;#&amp;nbsp;lsof -i :22&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2020 11:10:59 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89549#M17950</guid>
      <dc:creator>HristoGrigorov</dc:creator>
      <dc:date>2020-06-23T11:10:59Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point FTP server listening on SSH Port</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89554#M17951</link>
      <description>&lt;P&gt;Hi Hristo,&lt;/P&gt;&lt;P&gt;Thanks for the response.&amp;nbsp; Interestingly enough, it shows that sshd is listening (screen shot attached).&lt;/P&gt;&lt;P&gt;-Ruan&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2020 12:01:17 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89554#M17951</guid>
      <dc:creator>Ruan_Kotze</dc:creator>
      <dc:date>2020-06-23T12:01:17Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point FTP server listening on SSH Port</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89558#M17953</link>
      <description>&lt;P&gt;No idea why would FTP security server listen on port 22 but you could eventually try to move ssh service on port 2222 (for example).&lt;/P&gt;</description>
      <pubDate>Tue, 23 Jun 2020 12:44:02 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89558#M17953</guid>
      <dc:creator>HristoGrigorov</dc:creator>
      <dc:date>2020-06-23T12:44:02Z</dc:date>
    </item>
    <item>
      <title>Re: Check Point FTP server listening on SSH Port</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89582#M17956</link>
      <description>The Security Servers are deprecated and shouldn't ever be used/activated unless you have a Resource rule defined.&lt;BR /&gt;Sounds like a bug to me.&lt;BR /&gt;As a workaround, you can probably comment out the relevant line in $FWDIR/conf/fwauthd.conf and install policy.</description>
      <pubDate>Tue, 23 Jun 2020 17:03:52 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Check-Point-FTP-server-listening-on-SSH-Port/m-p/89582#M17956</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2020-06-23T17:03:52Z</dc:date>
    </item>
  </channel>
</rss>

