<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Outbound client ftp connections not working. in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/outbound-client-ftp-connections-not-working/m-p/2322359#M311608</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If your users interface on the ASA is &lt;STRONG&gt;"inside"&lt;/STRONG&gt; then first try &lt;STRONG&gt;"packet-tracer"&lt;/STRONG&gt; to determine what configurations would apply for this connection&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;packet-tracer input inside tcp &lt;HOST ip=""&gt; 12345 &lt;TARGET ip=""&gt; 21&lt;/TARGET&gt;&lt;/HOST&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also check that you have FTP Inspection enabled in your Policy Map&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Use the command&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;show run policy-map&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 03 Oct 2013 14:42:08 GMT</pubDate>
    <dc:creator>Jouni Forss</dc:creator>
    <dc:date>2013-10-03T14:42:08Z</dc:date>
    <item>
      <title>Outbound client ftp connections not working.</title>
      <link>https://community.cisco.com/t5/network-security/outbound-client-ftp-connections-not-working/m-p/2322358#M311606</link>
      <description>&lt;P&gt;Having trouble figuring this out.&amp;nbsp; Probably missing something simple.&lt;/P&gt;&lt;P&gt;I have some users that are trying to initiate a passive ftp connection to a server on the web.&lt;/P&gt;&lt;P&gt;I’ve setup an object group for general web traffic outbound sourced from inside.&amp;nbsp; Here’s a snippet. &lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #0000ff;"&gt; object-group service web_general tcp-udp&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #0000ff;"&gt; port-object eq 21&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #0000ff;"&gt; port-object eq www&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #0000ff;"&gt; port-object eq 443&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and ACL.&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt; color: #0000ff;"&gt;access-list inside extended permit object-group tcp-udp object-group myUsers any object-group web_general&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;the user tries to open a connection and nothing..&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;any ideas on troubleshooting?&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 02:46:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/outbound-client-ftp-connections-not-working/m-p/2322358#M311606</guid>
      <dc:creator>kscottwoody</dc:creator>
      <dc:date>2019-03-12T02:46:48Z</dc:date>
    </item>
    <item>
      <title>Re: Outbound client ftp connections not working.</title>
      <link>https://community.cisco.com/t5/network-security/outbound-client-ftp-connections-not-working/m-p/2322359#M311608</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If your users interface on the ASA is &lt;STRONG&gt;"inside"&lt;/STRONG&gt; then first try &lt;STRONG&gt;"packet-tracer"&lt;/STRONG&gt; to determine what configurations would apply for this connection&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;packet-tracer input inside tcp &lt;HOST ip=""&gt; 12345 &lt;TARGET ip=""&gt; 21&lt;/TARGET&gt;&lt;/HOST&gt;&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also check that you have FTP Inspection enabled in your Policy Map&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Use the command&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;show run policy-map&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;- Jouni&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 03 Oct 2013 14:42:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/outbound-client-ftp-connections-not-working/m-p/2322359#M311608</guid>
      <dc:creator>Jouni Forss</dc:creator>
      <dc:date>2013-10-03T14:42:08Z</dc:date>
    </item>
  </channel>
</rss>

