FTP anonymous user cannot login

(Last modified: 29Mar2005)

This document (10097118) is provided subject to the disclaimer at the end of this document.

fact

Novell NetWare 6.5

symptom

FTP anonymous user cannot login

Error:  530 Login Failed for User anonymous

NWFTPD -A gives error when creating anonymous user

Error:  Could not create ObjectKeyPair

cause

Universal Password was recently enabled and was enforcing password restrictions, included a minimum length password.  The anonymous user for FTP needs to exist without any password, or FTP will not be able to use it.

fix

Do not restrict the anonymous user with a minimum length password.  Do not give the anonymous user a password.

There is not usually a concern that the anonymous user has no password, as it usually has only [public] rights to any area other than the anonymous home directory.  But if there is concern with the fact that the anonymous user does not have a password, set address restrictions to accept only connections from the IP address(es) of the server or servers running FTP and using that anonymous user.  Any FTP client will still be able to login as anonymous, because in terms of the eDirectory login, it will be NWFTPD.NLM logging in from the server's itself which is tested for the correct IP address.  Once logged in, the FTP client will only have access to the anonymous home directory.  But other clients (such as NCP clients) will be denied the ability to login, since they are connecting from other addresses.

You can determine which container NWFTPD.NLM will look in for it's anonymous user by checking SYS:ETC\FTPSERV.CFG's DEFAULT_FTP_CONTEXT setting.  If that parameter is not set, NWFTPD will use the first bindery context of that server instead.  If no bindery context exists, it will use the server object's context.

document

Document Title: FTP anonymous user cannot login
Document ID: 10097118
Solution ID: NOVL101534
Creation Date: 28Mar2005
Modified Date: 29Mar2005
Novell Product Class:connectivity products

disclaimer

The Origin of this information may be internal or external to Novell. Novell makes all reasonable efforts to verify this information. However, the information provided in this document is for your information only. Novell makes no explicit or implied claims to the validity of this information.
Any trademarks referenced in this document are the property of their respective owners. Consult your product manuals for complete trademark information.