Home › Topics › Troubleshooting Method

Systematic Troubleshooting of Failed Transfers

"Permission denied." "Connection refused." "Transfer aborted." Each arrives as a complete sentence, as though it had explained something. It is attached to a person who needs their file and a deadline that does not. The temptation is to start changing things: restart the service, reset the password, open the firewall. Experienced administrators do something slower that finishes faster: they work through the layers in order. A transfer can only fail in a handful of places. Each place leaves a different fingerprint. The error message will not tell you which place. The layer will.

This series teaches that method. The five layers are connectivity, authentication, permissions, protocol, and content. Each gets an article of its own. Each article gives you the tests that isolate the layer and decodes the error messages. It offers fixes that address causes rather than symptoms. By the end, a junior administrator can take any failed transfer from first report to documented fix without guessing. They can avoid the hour spent changing things that were fine. The method has one hard rule: start at layer one, even when you are sure. Everybody skips it under pressure.

Articles in This Series

  • The Layered Method: Connectivity, Auth, Permissions, Protocol
    This article explains why order matters. It covers the first five minutes - gather facts before touching anything. It gives you the questions that locate the failing layer and the discipline of changing one thing at a time.
  • Layer One: Is There Even a Path?
    This article covers name resolution, port reachability tests per protocol, and handshake checks for TLS and SSH. It shows how to read the difference between refused, timed out, and reset - from both ends of the connection.
  • Layer Two: Why Authentication Fails
    The cause could be a wrong credential, locked account, expired password, key mismatch, host-key change, or a partner-side allowlist. This article shows how to tell them apart from server logs and client output before anyone resets anything.
  • Layer Three: Permission Denied, Decoded
    This article covers filesystem rights versus server-level rules, home directory and jail confusion, and inheritance surprises. It explains rename and delete rights - and the can-list-but-cannot-write family of errors.
  • Layer Four: Protocol-Level Failures
    This article covers mode and data-channel failures, TLS negotiation mismatches, and SFTP subsystem errors. It explains reading reply codes properly and capturing verbose client output that names the real problem.
  • Layer Five: The Transfer Worked but the File Is Wrong
    The file is truncated, corrupted, mangled, or simply the wrong file. This article covers comparing sizes and hashes, and checking modes and encodings. Then it explains writing up the fix so the next person does not start from zero.

Explore More Topics

This series is part of the Sysax file transfer topic library. The library covers the protocols, security practices, automation techniques, and operational skills behind reliable file transfer. The library pairs well with the practical tools we build. Sysax Multi Server is a secure FTP, FTPS, SFTP, and HTTPS server for Windows. Sysax FTP Automation schedules and scripts secure transfers so the routine ones run themselves.