PDA

View Full Version : [Solved] WORKAROUND: This server does not support TLS session resumption on the data



Fli
10-09-2024, 04:15 AM
FileZilla may return:


Insecure FTP data connection
This server does not support TLS session resumption on the data connection.

TLS session resumption on the data connection is an important security feature to protect against data connection stealing attacks.

If you continue, transferred files may be intercepted or their contents replaced by an attacker.

when trying to connect to a FTP server pure-ftpd. It has been said that other server like pro-ftpd does not trigger this FileZilla prompt.

Possibly this issue should be fixed on the side of a pure-ftpd. As a workaround, one can enable SSH for a user account and then the account can be accessed via SFTP (not FTP) mentioning SSH port (not regular FTP 21 port).

That way FIleZilla does not complain.