Yes I think soopen the correct passive FTP ports in the firewall
tail -f /var/log/auth.log
hostname -I
lsmod | grep ftp
nf_nat_ftp 20480 0
nf_nat 57344 4 nf_nat_ftp,nft_chain_nat,iptable_nat,xt_REDIRECT
nf_conntrack_ftp 24576 1 nf_nat_ftp
nf_conntrack 176128 5 xt_conntrack,nf_nat,nf_nat_ftp,nf_conntrack_ftp,xt_REDIRECT