Globalscape Firewall ((new))
| Source | Destination | Port | Protocol | |--------|-------------|------|----------| | DMZ Gateway | Internal EFT Server | 1100 (configurable) | TCP – Control channel | | DMZ Gateway | Internal EFT Server | 1101+ | TCP – Data channel (dynamic) |
| Component | Location | Function | |-----------|----------|-----------| | | DMZ | Terminates external client connections (FTP/S, HTTP/S, SFTP). Validates protocols. Proxies traffic to internal EFT server. | | Internal EFT Server | Corporate LAN | Stores user accounts, auditing logs, automation rules, and backend storage (disk, cloud). | | Database (SQL) | Internal LAN | Stores configuration, user metadata, and event history. | globalscape firewall
Mid-to-large enterprises requiring audited, DMZ-separated MFT with support for legacy FTP and modern SFTP/HTTPS. | Source | Destination | Port | Protocol
For organizations in healthcare, finance, or government, the "GlobalSCAPE firewall" configuration is often a prerequisite for passing audits. | | Internal EFT Server | Corporate LAN
Internal EFT server never sees the external client’s real IP unless forwarded via X-Forwarded-For or FTP PASV extensions.











