<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTP and sqlnet issue after migrating to FTD 4100 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftp-and-sqlnet-issue-after-migrating-to-ftd-4100/m-p/3715302#M1039462</link>
    <description>&lt;P&gt;I don't know about SQL, but we had and still have issues with FTP.&amp;nbsp; Are you using active or passive FTP.&amp;nbsp; There seems to be a bug that prevents active FTP from working correctly when being sent through snort.&amp;nbsp; This is even the case when we have inspect FTP configured in the policy map using flexconfig.&amp;nbsp; Passive FTP works fine though.&amp;nbsp; So we used this as a workaround, using passive FTP instead of active FTP.&lt;/P&gt;</description>
    <pubDate>Fri, 28 Sep 2018 20:51:15 GMT</pubDate>
    <dc:creator>Marius Gunnerud</dc:creator>
    <dc:date>2018-09-28T20:51:15Z</dc:date>
    <item>
      <title>FTP and sqlnet issue after migrating to FTD 4100</title>
      <link>https://community.cisco.com/t5/network-security/ftp-and-sqlnet-issue-after-migrating-to-ftd-4100/m-p/3714704#M1039461</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Recently we have migrated from ASA 5585 to FTD 4110 . After migration we are facing problem with FTP and sqlnet traffic. Earlier it used to work properly but after migration some times its working and some times connection time out.&lt;/P&gt;
&lt;P&gt;We used the packet capture and packet tracer to analyze the issue but it shows that the server is initiating the reset flag,&lt;/P&gt;
&lt;P&gt;Fast path seems to be working for the traffic&amp;nbsp; . Using fast path we are bypassing the snort check . But even without the fast path in the packet tracer we can see that the snort verdict is showing as pass.&lt;/P&gt;
&lt;P&gt;Hence we need to&amp;nbsp;understand what exactly is happening with the traffic if the fast path is not enabled.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks and regards&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Pushpak&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 16:17:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-and-sqlnet-issue-after-migrating-to-ftd-4100/m-p/3714704#M1039461</guid>
      <dc:creator>pushpak.lele</dc:creator>
      <dc:date>2020-02-21T16:17:34Z</dc:date>
    </item>
    <item>
      <title>Re: FTP and sqlnet issue after migrating to FTD 4100</title>
      <link>https://community.cisco.com/t5/network-security/ftp-and-sqlnet-issue-after-migrating-to-ftd-4100/m-p/3715302#M1039462</link>
      <description>&lt;P&gt;I don't know about SQL, but we had and still have issues with FTP.&amp;nbsp; Are you using active or passive FTP.&amp;nbsp; There seems to be a bug that prevents active FTP from working correctly when being sent through snort.&amp;nbsp; This is even the case when we have inspect FTP configured in the policy map using flexconfig.&amp;nbsp; Passive FTP works fine though.&amp;nbsp; So we used this as a workaround, using passive FTP instead of active FTP.&lt;/P&gt;</description>
      <pubDate>Fri, 28 Sep 2018 20:51:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-and-sqlnet-issue-after-migrating-to-ftd-4100/m-p/3715302#M1039462</guid>
      <dc:creator>Marius Gunnerud</dc:creator>
      <dc:date>2018-09-28T20:51:15Z</dc:date>
    </item>
    <item>
      <title>Re: FTP and sqlnet issue after migrating to FTD 4100</title>
      <link>https://community.cisco.com/t5/network-security/ftp-and-sqlnet-issue-after-migrating-to-ftd-4100/m-p/3715383#M1039463</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;Thanks, i will try with the passive FTP and let you know.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks and regards&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Pushpak&lt;/P&gt;</description>
      <pubDate>Sat, 29 Sep 2018 00:41:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-and-sqlnet-issue-after-migrating-to-ftd-4100/m-p/3715383#M1039463</guid>
      <dc:creator>pushpak.lele</dc:creator>
      <dc:date>2018-09-29T00:41:34Z</dc:date>
    </item>
  </channel>
</rss>

