<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ftp dir list &amp;quot;hang&amp;quot; on asa 8.3 in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509120#M618822</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;pkampana wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN lang="NO-BOK"&gt;6&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Nov 04 2010&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;07:06:54&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;85.95.45.106&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;39154&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;192.168.1.50&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;20&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Built inbound TCP connection 64482 for outside:85.95.45.106/39154 (85.95.45.106/39154) to inside:192.168.1.50/20 (62.89.40.36/20)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN lang="NO-BOK"&gt;6&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Nov 04 2010&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;07:06:53&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;85.95.45.106&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;57354&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;192.168.1.50&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;21&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Built inbound TCP connection 64481 for outside:85.95.45.106/57354 (85.95.45.106/57354) to inside:192.168.1.50/21 (62.89.40.36/21)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;tell me that control and data connections are allowed. The problem probably resides somewhere else.&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;Do a capture on the ASA inside "capture capin interface inside match ip host 192.168.1.50 host 85.95.45.106", try the transfer and look at the packets "sh cap capin". &lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;I hope it helps.&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;PK&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;Hello again&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Been away for some days, so looking back into this problem now.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See attached file for result of the capture, bit above my head, so much appreciated if you could advice.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;br&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hkl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 09 Nov 2010 07:15:35 GMT</pubDate>
    <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
    <dc:date>2010-11-09T07:15:35Z</dc:date>
    <item>
      <title>ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509114#M618816</link>
      <description>&lt;P&gt;Anyone&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I upgraded to 8.3.2 using ASDM 6.3.(4).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Got severel challanges with NAT and Access list statements. Think those are sorted out.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However I run an FTP server on the inside network, want any to access this. I can log in to the server from outside (so i guess the nat and access list are ok)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I try to do an LIST on the ftp server I get a 425 Can't open data connection error from the server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also do an ftp inspect:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;PRE&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map &lt;BR /&gt;&amp;nbsp; inspect ftp &lt;BR /&gt;&amp;nbsp; inspect h323 h225 &lt;BR /&gt;&amp;nbsp; inspect h323 ras &lt;BR /&gt;&amp;nbsp; inspect netbios &lt;BR /&gt;&amp;nbsp; inspect rsh &lt;BR /&gt;&amp;nbsp; inspect rtsp &lt;BR /&gt;&amp;nbsp; inspect skinny&amp;nbsp; &lt;BR /&gt;&amp;nbsp; inspect esmtp &lt;BR /&gt;&amp;nbsp; inspect sqlnet &lt;BR /&gt;&amp;nbsp; inspect sunrpc &lt;BR /&gt;&amp;nbsp; inspect tftp &lt;BR /&gt;&amp;nbsp; inspect sip&amp;nbsp; &lt;BR /&gt;&amp;nbsp; inspect xdmcp &lt;BR /&gt;&amp;nbsp; inspect ip-options&lt;BR /&gt;&lt;BR /&gt;Help please!&lt;BR /&gt;&lt;BR /&gt;br&lt;BR /&gt;&lt;BR /&gt;hkl&lt;BR /&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="https://community.cisco.com/" /&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:04:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509114#M618816</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2019-03-11T19:04:11Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509115#M618817</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It seems the data channel fails.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are probably not translating the high data channel port active ftp would use. What does the "debug ftp" show you? And logs on the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Nov 2010 19:16:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509115#M618817</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-11-03T19:16:08Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509116#M618818</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike here, What type of FTP server are you running? Is it passive or active? On the show service policy, do you see the FTP inspection having any kind of drops?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Nov 2010 19:16:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509116#M618818</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2010-11-03T19:16:58Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509117#M618819</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;pkampana wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It seems the data channel fails.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are probably not translating the high data channel port active ftp would use. What does the "debug ftp" show you? And logs on the ASA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PK&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;pkampana, thanks for your response.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"deb ftp" from command line as in deb ftp client does not show anything, the logs on the asa (syslog) show no "deny's", se below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hmmm, seems I can't cut'n paste into this editor, se attached file for logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hkl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Nov 2010 07:17:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509117#M618819</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2010-11-04T07:17:01Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509118#M618820</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN lang="NO-BOK"&gt;6&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Nov 04 2010&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;07:06:54&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;85.95.45.106&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;39154&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;192.168.1.50&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;20&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Built inbound TCP connection 64482 for outside:85.95.45.106/39154 (85.95.45.106/39154) to inside:192.168.1.50/20 (62.89.40.36/20)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN lang="NO-BOK"&gt;6&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Nov 04 2010&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;07:06:53&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;85.95.45.106&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;57354&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;192.168.1.50&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;21&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Built inbound TCP connection 64481 for outside:85.95.45.106/57354 (85.95.45.106/57354) to inside:192.168.1.50/21 (62.89.40.36/21)&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;tell me that control and data connections are allowed. The problem probably resides somewhere else.&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;Do a capture on the ASA inside "capture capin interface inside match ip host 192.168.1.50 host 85.95.45.106", try the transfer and look at the packets "sh cap capin". &lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;I hope it helps.&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;PK&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 04 Nov 2010 13:38:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509118#M618820</guid>
      <dc:creator>Panos Kampanakis</dc:creator>
      <dc:date>2010-11-04T13:38:40Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509119#M618821</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This is active ftp with client on the outside. If you allow tcp 20 and 21 on the outside acl it should work without ftp inspection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would remove this server &lt;SPAN lang="NO-BOK"&gt;192.168.1.50 &lt;/SPAN&gt;temporarily and use a laptop or other PC with the same ip address &lt;SPAN lang="NO-BOK"&gt;192.168.1.50 and install filezilla server on it. And see if it works.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;You can get filezilla here: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://filezilla-project.org/download.php?type=server"&gt;http://filezilla-project.org/download.php?type=server&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Make sure it is set to active ftp. Verify here: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://support.tigertech.net/filezilla-passive"&gt;http://support.tigertech.net/filezilla-passive&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Nov 2010 12:47:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509119#M618821</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2010-11-05T12:47:18Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509120#M618822</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;pkampana wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN lang="NO-BOK"&gt;6&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Nov 04 2010&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;07:06:54&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;85.95.45.106&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;39154&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;192.168.1.50&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;20&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Built inbound TCP connection 64482 for outside:85.95.45.106/39154 (85.95.45.106/39154) to inside:192.168.1.50/20 (62.89.40.36/20)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;SPAN lang="NO-BOK"&gt;6&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Nov 04 2010&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;07:06:53&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;85.95.45.106&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;57354&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;192.168.1.50&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;21&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;Built inbound TCP connection 64481 for outside:85.95.45.106/57354 (85.95.45.106/57354) to inside:192.168.1.50/21 (62.89.40.36/21)&lt;/SPAN&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;tell me that control and data connections are allowed. The problem probably resides somewhere else.&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;Do a capture on the ASA inside "capture capin interface inside match ip host 192.168.1.50 host 85.95.45.106", try the transfer and look at the packets "sh cap capin". &lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;I hope it helps.&lt;/P&gt;&lt;P class="MsoNormal"&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;PK&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;Hello again&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Been away for some days, so looking back into this problem now.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See attached file for result of the capture, bit above my head, so much appreciated if you could advice.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;br&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hkl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 07:15:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509120#M618822</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2010-11-09T07:15:35Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509121#M618823</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;mayrojas wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike here, What type of FTP server are you running? Is it passive or active? On the show service policy, do you see the FTP inspection having any kind of drops?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;Hello Mike&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your responce.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hello mike, thanks for your response.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;I'm running a FileZilla server 0.9.37 (btw: everything worked fine before the upgrade to 8.3) Not really sure if the server is passive or active, there are only two settings in for passive mode in the server, defining external IP, and also specifying a custom port range.&lt;/P&gt;&lt;P&gt;anubis(config)# sh run policy-map&lt;BR /&gt;!&lt;BR /&gt;policy-map type inspect dns preset_dns_map&lt;BR /&gt; parameters&lt;BR /&gt;&amp;nbsp; message-length maximum 512&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt;&amp;nbsp; inspect dns preset_dns_map&lt;BR /&gt;&amp;nbsp; inspect ftp&lt;BR /&gt;&amp;nbsp; inspect h323 h225&lt;BR /&gt;&amp;nbsp; inspect h323 ras&lt;BR /&gt;&amp;nbsp; inspect netbios&lt;BR /&gt;&amp;nbsp; inspect rsh&lt;BR /&gt;&amp;nbsp; inspect rtsp&lt;BR /&gt;&amp;nbsp; inspect skinny&lt;BR /&gt;&amp;nbsp; inspect esmtp&lt;BR /&gt;&amp;nbsp; inspect sqlnet&lt;BR /&gt;&amp;nbsp; inspect sunrpc&lt;BR /&gt;&amp;nbsp; inspect tftp&lt;BR /&gt;&amp;nbsp; inspect sip&lt;BR /&gt;&amp;nbsp; inspect xdmcp&lt;BR /&gt;&amp;nbsp; inspect ip-options&lt;BR /&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;anubis(config)# sh service-policy global&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Global policy:&lt;BR /&gt;&amp;nbsp; Service-policy: global_policy&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; Class-map: inspection_default&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: dns preset_dns_map, packet 1079, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: ftp, packet 470, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: h323 h225 _default_h323_map, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; tcp-proxy: bytes in buffer 0, bytes dropped 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: h323 ras _default_h323_map, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: netbios, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: rsh, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: rtsp, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; tcp-proxy: bytes in buffer 0, bytes dropped 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: skinny , packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; tcp-proxy: bytes in buffer 0, bytes dropped 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: esmtp _default_esmtp_map, packet 49, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: sqlnet, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: sunrpc, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; tcp-proxy: bytes in buffer 0, bytes dropped 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: tftp, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: sip , packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; tcp-proxy: bytes in buffer 0, bytes dropped 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: xdmcp, packet 0, drop 0, reset-drop 0&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Inspect: ip-options _default_ip_options_map, packet 0, drop 0, reset-drop 0&lt;BR /&gt;anubis(config)#&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 07:20:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509121#M618823</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2010-11-09T07:20:57Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509122#M618824</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt;&lt;P&gt;kusankar wrote:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is active ftp with client on the outside. If you allow tcp 20 and 21 on the outside acl it should work without ftp inspection.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would remove this server &lt;SPAN lang="NO-BOK"&gt;192.168.1.50 &lt;/SPAN&gt;temporarily and use a laptop or other PC with the same ip address &lt;SPAN lang="NO-BOK"&gt;192.168.1.50 and install filezilla server on it. And see if it works.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;You can get filezilla here: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://filezilla-project.org/download.php?type=server"&gt;http://filezilla-project.org/download.php?type=server&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Make sure it is set to active ftp. Verify here: &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://support.tigertech.net/filezilla-passive"&gt;http://support.tigertech.net/filezilla-passive&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hello and thanks for the responce.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Port 20 and 21 is alowed. I tried to change the server to a vsftpd running on a linux, same result.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Seems that the link to set active/passive ftp in FileZilla is for the client not the server, the server options intf does not have a "tab" for active/passive.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hkl&lt;/P&gt;&lt;P&gt;&lt;IMG src="https://community.cisco.com/" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 07:28:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509122#M618824</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2010-11-09T07:28:43Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509123#M618825</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Kristian,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you think that you can do the same capture that Panos Asked you on the outside, download them in pcap format and send them here? The only difference would be that instead of the private IP you will use the public IP of the server. Capture both sides inside and outside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In order to download them, the only thing that you need to do is enable the http server on the ASA (HTTP server enable) and put the following URL on the web browser&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://"&gt;https://&lt;/A&gt;&lt;SPAN&gt;&lt;IP_OF_FW&gt;/capture/&lt;NAME_OF_CAPTURE&gt;/pcap&lt;/NAME_OF_CAPTURE&gt;&lt;/IP_OF_FW&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For me, it seems like the data channel is not going out, take a look at this&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; 41: 08:02:48.680201 802.1Q vlan#1 P0 192.168.1.50.20 &amp;gt; 85.95.45.106.12607: S 2382230253:2382230253(0) win 65535 &lt;MSS 1460=""&gt;&lt;/MSS&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; 44: 08:02:51.654629 802.1Q vlan#1 P0 192.168.1.50.20 &amp;gt; 85.95.45.106.12607: S 2382230253:2382230253(0) win 65535 &lt;MSS 1460=""&gt; &lt;BR /&gt;&amp;nbsp; 45: 08:02:57.691660 802.1Q vlan#1 P0 192.168.1.50.20 &amp;gt; 85.95.45.106.12607: S 2382230253:2382230253(0) win 65535 &lt;MSS 1460=""&gt;&lt;/MSS&gt;&lt;/MSS&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is the Data channel that the server is trying to open.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if you are able to download the captures of if you need further explanation of how to do it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 14:02:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509123#M618825</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2010-11-09T14:02:57Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509124#M618826</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for helping me out here.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Attached 2 files&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;capture capout interface outside match ip host 62.89.40.36 host 85.95.45.106 (pcap)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;capture capin interface inside match ip host 62.89.40.36 host 85.95.45.106 (pcap(2))&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this is the right cptures you look for.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Again, thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hkl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 14:34:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509124#M618826</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2010-11-09T14:34:02Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509125#M618827</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Oops&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Seems that only one file was attached, heres the next.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hkl&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 14:42:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509125#M618827</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2010-11-09T14:42:29Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509126#M618828</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hehehe, I noticed, but thats ok. Thanks so much for taking those captures. I can see that the server sends out the port 20 in order to establish the Data connection with the client, but the client never respond. Here is two things that we can try.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Would youp please open command prompt on the PC and try to open the ftp connection over there? ftp &lt;IP address=""&gt; and once you are there just type list&lt;/IP&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If it doesnt work, download wireshark on that computer, start sniffing and check if the SYN packet on port 20 gets to the client from the server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hey, if you need clarification on anything just let me know ok?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 14:50:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509126#M618828</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2010-11-09T14:50:00Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509127#M618829</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Mike&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm going to hang myself untill it realy hurts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Your last post got me on the right track, I've already testet other ftp clients, but from the same client machine. So I logged into a Linux server I have lokated externaluy, and it worked fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Had to think a bit and realised I HATE WINDOWS FIREWALL, turned it of on the client machine and we are all set.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks a lot to all of you who have wasted time on my stupidity.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;hkl&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hopfully I learned something in the process.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 15:57:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509127#M618829</guid>
      <dc:creator>Hans KRISTIAN LARSEN</dc:creator>
      <dc:date>2010-11-09T15:57:02Z</dc:date>
    </item>
    <item>
      <title>Re: ftp dir list "hang" on asa 8.3</title>
      <link>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509128#M618830</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Hehehhehehehe Yay! At least we had it working &lt;SPAN __jive_emoticon_name="grin" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/grin.gif"&gt;&lt;/SPAN&gt; .... Next time you wont forget... It was a pleasure helping you....&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cheers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 09 Nov 2010 16:04:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-dir-list-quot-hang-quot-on-asa-8-3/m-p/1509128#M618830</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2010-11-09T16:04:43Z</dc:date>
    </item>
  </channel>
</rss>

