<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FTP of ISE backup (passive mode) failing. in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ftp-of-ise-backup-passive-mode-failing/m-p/4527542#M572060</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have two customers, one on ISE 2.7 and the other one on ISE3.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ISE 2.7 has Patch 6 installed which can FTP backups over to a 3rd party successfully.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ISE 3.0 cannot FTP backups over to the same 3rd party. The control channel on tcp port 21 was successful. When the data is transferred over FTP (passive mode) it does this on a high port number the backup fails. The traffic is getting denied due to a firewall rules which doesn't allow high port numbers&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It looks like ISE 3.0 is using passive mode and not active mode.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is the bug CSCvt91627 causing this issue?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a way to get ISE 3.0 to backup via active mode as the customer doesn't want open high ports on their external firewalls?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks Anthony.&lt;/P&gt;</description>
    <pubDate>Thu, 06 Jan 2022 17:24:48 GMT</pubDate>
    <dc:creator>Anthony O'Reilly</dc:creator>
    <dc:date>2022-01-06T17:24:48Z</dc:date>
    <item>
      <title>FTP of ISE backup (passive mode) failing.</title>
      <link>https://community.cisco.com/t5/network-access-control/ftp-of-ise-backup-passive-mode-failing/m-p/4527542#M572060</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I have two customers, one on ISE 2.7 and the other one on ISE3.0&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ISE 2.7 has Patch 6 installed which can FTP backups over to a 3rd party successfully.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ISE 3.0 cannot FTP backups over to the same 3rd party. The control channel on tcp port 21 was successful. When the data is transferred over FTP (passive mode) it does this on a high port number the backup fails. The traffic is getting denied due to a firewall rules which doesn't allow high port numbers&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;It looks like ISE 3.0 is using passive mode and not active mode.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is the bug CSCvt91627 causing this issue?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Is there a way to get ISE 3.0 to backup via active mode as the customer doesn't want open high ports on their external firewalls?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks Anthony.&lt;/P&gt;</description>
      <pubDate>Thu, 06 Jan 2022 17:24:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ftp-of-ise-backup-passive-mode-failing/m-p/4527542#M572060</guid>
      <dc:creator>Anthony O'Reilly</dc:creator>
      <dc:date>2022-01-06T17:24:48Z</dc:date>
    </item>
    <item>
      <title>Re: FTP of ISE backup (passive mode) failing.</title>
      <link>https://community.cisco.com/t5/network-access-control/ftp-of-ise-backup-passive-mode-failing/m-p/4527605#M572062</link>
      <description>&lt;P&gt;Maybe a bug, or due to plain FTP sometimes having issues with secure reasons, try any SFTP and see if that success?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Note: not used FTP any time before due to security reasons, SFTP works as expected for me&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 06 Jan 2022 20:10:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ftp-of-ise-backup-passive-mode-failing/m-p/4527605#M572062</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2022-01-06T20:10:13Z</dc:date>
    </item>
    <item>
      <title>Re: FTP of ISE backup (passive mode) failing.</title>
      <link>https://community.cisco.com/t5/network-access-control/ftp-of-ise-backup-passive-mode-failing/m-p/4528550#M572094</link>
      <description>&lt;P&gt;Changing from passive to active mode is not something that is user configurable in ISE.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 09 Jan 2022 20:57:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ftp-of-ise-backup-passive-mode-failing/m-p/4528550#M572094</guid>
      <dc:creator>Arne Bier</dc:creator>
      <dc:date>2022-01-09T20:57:40Z</dc:date>
    </item>
  </channel>
</rss>

