<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FTP issue through Firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784169#M533863</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Kevin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you check the NAT commands for the server? Also, verify if "inspect ftp" is enabled on the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 10 Aug 2011 15:54:25 GMT</pubDate>
    <dc:creator>Anu M Chacko</dc:creator>
    <dc:date>2011-08-10T15:54:25Z</dc:date>
    <item>
      <title>FTP issue through Firewall</title>
      <link>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784168#M533862</link>
      <description>&lt;P&gt;Hello Forum&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have a very interesting problem at a client site this morning.&amp;nbsp; Here is a summary of the problem in a nutshell.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This specific client has set up FTP to an FTP server in a DMZ at their Headquarters building.&amp;nbsp; They have two Production servers that send FTP data to the box in the DMZ.&amp;nbsp; The 1st of the two servers sending FTP data is located on the inside network (they use an ASA with a inside, outside, DMZ, WAN) and sends the FTP data into the box on the DMZ.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The 2nd of the two production servers is located across the WAN interface of the ASA.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The issue is as follows:&amp;nbsp; Server 1 can perform all of its ftp commands correctly once it has connected to the FTP server in the DMZ.&amp;nbsp; Server 2 can log into the FTP server and authenticate successfully, but when a "ls" command or and "dir" command is issued, there is no response (the contents of the root folder are not listed as they are when the same command is issued on the 1st server).&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have been running sniffer on the FTP server in the DMZ, but cannot tell from the traces what is wrong.&amp;nbsp; I have a hard time beleiving that this may be an ACL issue, as if FTP was not allowed coming in from the WAN interface, then they would not have the ability to authenticate.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am wondering if anyone has seen behavior like this before...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any help or insight.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Kevin&amp;nbsp; &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:09:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784168#M533862</guid>
      <dc:creator>Kevin Melton</dc:creator>
      <dc:date>2019-03-11T21:09:54Z</dc:date>
    </item>
    <item>
      <title>FTP issue through Firewall</title>
      <link>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784169#M533863</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Kevin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could you check the NAT commands for the server? Also, verify if "inspect ftp" is enabled on the ASA.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anu&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Aug 2011 15:54:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784169#M533863</guid>
      <dc:creator>Anu M Chacko</dc:creator>
      <dc:date>2011-08-10T15:54:25Z</dc:date>
    </item>
    <item>
      <title>Re: FTP issue through Firewall</title>
      <link>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784170#M533864</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If everything looks normal from firewall end, I would look from server end. I had seen a scenario where an admin restricted user access to their FTP server. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hth&lt;/P&gt;&lt;P&gt;MS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Aug 2011 16:00:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784170#M533864</guid>
      <dc:creator>mvsheik123</dc:creator>
      <dc:date>2011-08-10T16:00:42Z</dc:date>
    </item>
    <item>
      <title>FTP issue through Firewall</title>
      <link>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784171#M533865</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Anu&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I looked at our ASA to try and figure out if in fact the inspect commands were resident.&amp;nbsp; We are running code 8.2.2, but it looks as if we are running the "inspect FTP" command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect dns migrated_dns_map_1&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rsh&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect rtsp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sqlnet&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sunrpc&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect xdmcp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect sip&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect netbios&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect tftp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect icmp&lt;/P&gt;&lt;P&gt;policy-map global-policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I wasnt too concerned abou the NAT as I felt that if in fact I can get to the FTP box, and can authenticate to it, NAT has to be working properly.&amp;nbsp; Otherwise I would not get that far.&amp;nbsp; Correct me please if this is inaccurate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Aug 2011 16:46:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784171#M533865</guid>
      <dc:creator>Kevin Melton</dc:creator>
      <dc:date>2011-08-10T16:46:27Z</dc:date>
    </item>
    <item>
      <title>FTP issue through Firewall</title>
      <link>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784172#M533866</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Sorry but THIS IS NOT THE CORRECT ANSWER.&amp;nbsp; i SIMPLY HIT THE WRONG BUTTON.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We are definitely looking at things from the Server side.&amp;nbsp; I have Wireshark installed and capturing all of the data.&amp;nbsp; The &lt;/P&gt;&lt;P&gt;issue is that we are logging in using the same user account whether we are coming from Server 1 (which works fine) or Server 2 (which cannot do some of the FTP commands including LS and DIR.&amp;nbsp; So at that point, it would not be the user being restricted, as it works from 1 of the 2 servers.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 10 Aug 2011 16:49:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-issue-through-firewall/m-p/1784172#M533866</guid>
      <dc:creator>Kevin Melton</dc:creator>
      <dc:date>2011-08-10T16:49:56Z</dc:date>
    </item>
  </channel>
</rss>

