Thursday, January 17, 2013


Suppose we have the following scenario and want to install the FTP Server service and DNS. The steps are as follows:



1. Configure TCP / IP for both client and server. Remember uncheck IPv6 in the properties window TCP / IP.

2. Check the LAN connection between client and server. If the ping succeeds had to point 3.

3. We add the FTP service on the server:

  • <Control Panel> <Enable caracteristicas> <Programas and features on or off Windows Folder <Features> <Add functions> server> <Memory <dns> and Web <Server (IIS)>
  •  Within the IIS feature is the FTP.
  • To see that this started we will: <Home> <Herramientas administrativas> <IIS>


4. Install Active Directory:

  • <execute> <Home> <dcpromo>:
  •  Create a new domain in a new forest
  •  FQDN: miempresa.com
  •  Domain functional level: Windows Server 2003 (ensures compatibility with Windows Server 2008) in Windows Server 2008 change adds no new functionality and does not support Windows Server 2003 in the event that there are more servers in the network.
  •  Next, next .....
  •  Restart


5. Create a new FTP site:


  • Create a new FTP site from the IIS console:
  • IP: The server
  • Do not isolate users
  • directory: C: \ empresaFTP
  • Permits: L and E
  • Inside the folder empresaFTP put some file.
  • In <Properties> Can see the site properties:
  • By default the user disconnects inactive 120sec
  • Ports used.
  • You have enabled logging. See where you save and It stores
  • Option to write a welcome message.

 Configuring the DNS to resolve ftp.miempresa.com
  • Client PC open a browser and type: ftp://ftp.miempresa.com. We list and download the file but can not write because we have default permissions.
Beware that the Windows Firewall is off, when you reboot the machine back on.


6. Configure FTP site with user access:

• From the Server setup the old site to not allow anonymous access,


  • Create user in active directory JR:
  • Open console and Equipment Actuve User> Directory>
  • Create a new organizational unit called ftpusers.
  • Create a user within ftpusers JR.

  • We include the client PC with the user domain Jr:
  • ftp.miempresa.com try to access the site and folder c: \> EmpresaFtp. By default we will read and execute permissions since JR is a user belonging to the Domain Users group

  • We eliminate the "user group" in the folder c: \> EmpresaFtp. You can access now? no
  •  Right click on the folder, properties, security,

  • Advanced Options: (will neceasary this step to remove the inherited permissions of the group)

  • Uncheck "Include inheritable permissions ....." and copy. OK, OK

Edit and Remove "Users (MyCompany \ Users)"
  • We add the user "JR" permissions to the folder c: \> EmpresaFtp. You can read and write? Write not.
  • We give the user "JR" in the security tab of the folder c: \> EmpresaFtp permission.
We found that pq modemos modify the file we downloaded, we modify and upload to the server has become all from Windows Explorer (not from Internet Explorer)



  • We will keep JR can save more than 100KB in EmpresaFtp folder.:
  • Disco <Display C> <Cuota>:
  • Enable quota manager
  • Deny space if it exceeds limit
  •  Register an event when ......






  • <Factory of Cuota> <New>, add user JR and space limits.

Since the client and the user connected with JR, we try to copy more than 100KB of information in the folder EmpresaFtp. If all goes well, we will receive a warning message to the copied 90KB 100KB and if we exceed the error and we will not leave us. We may be seeing the messages in the event screen in <Display C> disk, <Cuotas>, <Factory of Cuota> and select User JR.











3 comments:

TOP