FTP issue and how to resolve it

Jonathan 400 Reputation points
2026-10-06T07:46:43.29+00:00

Hi,

I got the issue like

200 Type set to I.Command: PORT 10,0,2,15,195,12 Response: 501 Server cannot accept argument.Error: Failed to retrieve directory listing

on FTP Any advice? Must I use passive for FTP?

Windows for business | Windows Server | Networking | Network connectivity and file sharing
0 comments No comments

3 answers

Sort by: Most helpful
  1. Tracy Le 13,290 Reputation points Independent Advisor
    2026-10-08T14:22:45.1433333+00:00

    Hello Jonathan,

    Your new log still shows a PORT command, which means FileZilla is still connecting in Active mode, so the server keeps rejecting it with the same 501. In passive mode you would see PASV or EPSV there instead. In FileZilla, go to Edit > Settings > Connection > FTP and set Transfer Mode to Passive. If you connect through Site Manager, also open the Transfer Settings tab for that site and set it to Passive, since a site-level setting overrides the global one. Then reconnect.

    You should now see 227 Entering Passive Mode followed by the directory listing. If it times out at that point instead, the problem has moved to the server side. On IIS, open FTP Firewall Support, define a data channel port range such as 50000-50100, and enter the public IP under External IP Address of Firewall if the server is behind NAT. Allow that range in the firewall, then restart the service with net stop ftpsvc and net start ftpsvc.

    If anything still fails, please post the new log.

    Tracy Le

    Was this answer helpful?

    0 comments No comments

  2. Tracy Le 13,290 Reputation points Independent Advisor
    2026-10-06T15:17:37.0533333+00:00

    Hello Jonathan,

    Based on the error shown, I would recommend trying Passive Mode first. The FTP client is sending a PORT command that contains the private address 10.0.2.15, and the server is rejecting it with "501 Server cannot accept argument". This typically happens when the client is behind NAT and the server cannot establish the return data connection required by Active Mode.

    If Passive Mode works, the issue is likely related to the network translation between the client and the FTP server. If you must use Active Mode, verify that the client has a directly reachable address or consider using a bridged network configuration instead of NAT.

    If the FTP server is IIS FTP, also confirm that the passive port range and any firewall rules are configured correctly. If this helps, please accept the answer.

    Tracy Le.

    Was this answer helpful?


  3. AI answer

    2026-10-06T07:46:58.4733333+00:00

    Yes—passive FTP is the recommended mode in most network and Internet scenarios.

    The log shows the client is sending a PORT command, which means it is using active FTP. In active mode, the server must connect back to the client on the IP and port provided in that command. That commonly fails behind NAT or firewalls, and active mode is no longer recommended for Internet scenarios.

    What the error indicates:

    • PORT 10,0,2,15,195,12 contains a private client IP address (10.0.2.15).
    • A server on the Internet generally cannot connect back to that private address.
    • In IIS FTP, 501 means syntax error in parameters or arguments.
    • A failed directory listing is consistent with a data connection problem, not a login problem.

    What to do:

    1. Switch the FTP client to passive mode.
      • Passive mode lets the client open both the control and data connections.
      • This works better through NAT and firewalls.
    2. Make sure the FTP server allows passive data ports through the firewall.
      • FTP needs port 21 for the control channel.
      • Data transfers and directory listings need a secondary data channel.
      • If passive mode is used, the server must have its passive port range opened through all firewall layers.
    3. If using IIS FTP, configure a fixed passive port range and allow it consistently.
      • A Microsoft Q&A resolution for similar “login works but directory listing times out” behavior recommends defining a passive range such as 49152-65535 in IIS and allowing port 21 plus that passive range in the firewall layers.
    4. Check FTP server logs for the exact data-channel failure.
      • On Windows FTP servers, logs can help confirm whether the data connection is being rejected or blocked.

    Why passive mode is preferred:

    • Active mode requires the server to initiate the data connection back to the client.
    • Passive mode requires the client to initiate both connections.
    • Microsoft documentation states active connections are no longer recommended because they do not work well in Internet scenarios.

    References:

    AI-generated content may be incorrect. Read our transparency notes for more information.

    Was this answer helpful?

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.