• tomasjenikovsky

    (@tomasjenikovsky)


    Hello everyone,

    I host multiple WP instances and I would like to backup them to my home NAS storage (Zyxel NAS326) via secured WebDAVs protocol.

    At home I have a public IPv4 and the NAS sits behind NAT where the connection is set up by port forwarding (the service on the NAS for dav runs on port 5002, for davs on port 5003).

    Unfortunately I cannot use FTPs because when it’s behind NAT, the FTP service in XCloner tries to connect to data transmission port on the public IPv4 and not on the local one so the FTP connection simply does not work thus I would like to use WebDAVs.

    If I connect from the outside network to my davs service via for example Filezilla, there isn’t any problem (I just need to accept manually the trust to present SSL certificate).

    But when I try to connect to the davs via XCloner, I get the error “WebDAV connection error: SSL certificate problem: unable to get local issuer certificate”.

    When I try to connect to dav without secure SSL connection, the connection works and my backups work as they should. But to be honest, this isn’t optimal and I would like to use secured davs, not dav.

    On my NAS I have valid and signet SSL certificate from certbot, which is in use for https access, webdavs or ftps. What I can’t do on my NAS (just because the device does not offer this option), is the upload of complete certificate chain of the SSL certificate. I can upload and apply only single, root SSL certificate which is used for all services.

    Is it possible this could be the problem (the missing cert chain)? Is there any chance or workaround in XCloner configuration how I could bypass or manually accept the trust to the connection?

    Of course if someone has a tip how to make FTPs working better than davs (I just need can specify in FTP service in XCloner it just need to use the local IP range for transmission ports), please let me know.

    Many thanks in advance.

    The page I need help with: [log in to see the link]

Viewing 2 replies - 1 through 2 (of 2 total)
  • Plugin Support jimiero

    (@jimiero)

    Hello,

    Unfortunately, we don’t have a workaround for that, maybe you can contact your hosting company and ask them to try sort the SSL issue.

    Thread Starter tomasjenikovsky

    (@tomasjenikovsky)

    Hello,

    Thanks for the reply.

    I host everything myself on my own linux based VM. For the NAS I create SSL Let’sEncrypt cert myself too via mentioned certbot.

    I will look again into the options of installing SSL certs on my NAS, I have root access there. Unfortunately the OS has very limited options.

    I see now in my first post I described the issue with ftps connection in opposite way – When I try to connect XCloner with ftps, the initial connection on port 21 (8021 in my case) works, but when it tries to connect to data transmission port, it tries to connect to local IPv4 from LAN and not to the public one. I guess it gets the LAN IPv4 address during the greet connection. I need to tell ftp service it should use the public address all the time (I have the range for transmission ports forwarded from the public address on the router). For example Filezilla or other clients I tried works fine. Isn’t here any possibility I could try in configuration of XCloner to make the ftps working properly?

    Thank you.

Viewing 2 replies - 1 through 2 (of 2 total)
  • The topic ‘Can’t connect to davs on Zyxel NAS326’ is closed to new replies.