<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cannot use FTP Passive/Active of ASA5505 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799216#M530964</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; No because the server is not ours and the company is like&amp;nbsp; No way don't touch our stuff if it works with the PPTP it works with your cisco, don't put us in the problem blah blah blah.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could try for the client&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 13 Sep 2011 17:56:05 GMT</pubDate>
    <dc:creator>Ratatapaa</dc:creator>
    <dc:date>2011-09-13T17:56:05Z</dc:date>
    <item>
      <title>Cannot use FTP Passive/Active of ASA5505</title>
      <link>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799214#M530959</link>
      <description>&lt;P&gt;Hi we establshed a&amp;nbsp; VPN for work and we have 1 mini problems.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Users cannot download some files from a FTP in a software over VPN&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Explanation users work with a program and inside the program they download claim (the software goes to the FTP and download the file)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But the program returns an error 3018 in FTPGET.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the user goes to the old PPTP VPN it works like a charm&amp;nbsp; so the problem is the Cisco VPN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I cannot post my complete config but we use the filter vpn value to associate a special access-list to a user.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The user that has this problem has this as an access-list.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list 201 extended ip permit 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've made some research and i've added this info&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class inspection_default&lt;/P&gt;&lt;P&gt;Inspection ftp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Still doesn't work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have to&amp;nbsp; add that normally the internal network is 2.0 and not 202.0 but since we have user with 2.0 at home we had to do this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So when a user sends a request to 202. the cisco fowards it to the Juniper inside the network and it translate it back to 2.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also that is the ONLY thing that doesn't work.&amp;nbsp; The client can work all day on that program and it will work #1 exept when she does the claims&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am also been working on this VPN for 2-3 months without any problems.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:24:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799214#M530959</guid>
      <dc:creator>Ratatapaa</dc:creator>
      <dc:date>2019-03-11T21:24:09Z</dc:date>
    </item>
    <item>
      <title>Cannot use FTP Passive/Active of ASA5505</title>
      <link>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799215#M530962</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you take a capture simultaneously on the server and the client using wireshark? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Sep 2011 17:33:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799215#M530962</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-09-13T17:33:20Z</dc:date>
    </item>
    <item>
      <title>Cannot use FTP Passive/Active of ASA5505</title>
      <link>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799216#M530964</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; No because the server is not ours and the company is like&amp;nbsp; No way don't touch our stuff if it works with the PPTP it works with your cisco, don't put us in the problem blah blah blah.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could try for the client&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Sep 2011 17:56:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799216#M530964</guid>
      <dc:creator>Ratatapaa</dc:creator>
      <dc:date>2011-09-13T17:56:05Z</dc:date>
    </item>
    <item>
      <title>Cannot use FTP Passive/Active of ASA5505</title>
      <link>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799217#M530966</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Mmmm, I see, well, at least can you take the capture on the client side? That something you control right? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Sep 2011 18:01:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cannot-use-ftp-passive-active-of-asa5505/m-p/1799217#M530966</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-09-13T18:01:54Z</dc:date>
    </item>
  </channel>
</rss>

