Firewall SPI
Posted: Wed Apr 16, 2008 9:11 pm
I the last weeks i had some problems uploading / downloading files via FTP to some FTP sites.
Problem was a setting in my new router.
After disabling this option FTP is working fine again.
Why is is option only blocking some FTP sessions and not other traffic?
<b><i>Help file of this option:</i></b>
Firewall Settings
Enable SPI
SPI ("stateful packet inspection" also known as "dynamic packet filtering") helps to prevent cyberattacks by tracking more state per session. It validates that the traffic passing through that session conforms to the protocol. When the protocol is TCP, SPI checks that packet sequence numbers are within the valid range for the session, discarding those packets that do not have valid sequence numbers.
Whether SPI is enabled or not, the router always tracks TCP connection states and ensures that each TCP packet's flags are valid for the current state.
Problem was a setting in my new router.
After disabling this option FTP is working fine again.
Why is is option only blocking some FTP sessions and not other traffic?
<b><i>Help file of this option:</i></b>
Firewall Settings
Enable SPI
SPI ("stateful packet inspection" also known as "dynamic packet filtering") helps to prevent cyberattacks by tracking more state per session. It validates that the traffic passing through that session conforms to the protocol. When the protocol is TCP, SPI checks that packet sequence numbers are within the valid range for the session, discarding those packets that do not have valid sequence numbers.
Whether SPI is enabled or not, the router always tracks TCP connection states and ensures that each TCP packet's flags are valid for the current state.