<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ftp passive mode in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftp-passive-mode/m-p/1296926#M792243</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you , it works!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 24 Oct 2009 12:59:37 GMT</pubDate>
    <dc:creator>mekael.itzik</dc:creator>
    <dc:date>2009-10-24T12:59:37Z</dc:date>
    <item>
      <title>ftp passive mode</title>
      <link>https://community.cisco.com/t5/network-security/ftp-passive-mode/m-p/1296924#M792220</link>
      <description>&lt;P&gt;ASA 5505 Version 8.2(1)&lt;/P&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I have one PC that has to connect to public FTP in passive mode.&lt;/P&gt;&lt;P&gt;But if I understand right in pasive mode PC connects &lt;/P&gt;&lt;P&gt;to randomally  data port of server.&lt;/P&gt;&lt;P&gt;What do I have to specify in confoguration of ASA 5505:&lt;/P&gt;&lt;P&gt;Open for PC all ports of specified FTP address&lt;/P&gt;&lt;P&gt;or to give range of data ports that server assigns randomally.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 16:31:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-passive-mode/m-p/1296924#M792220</guid>
      <dc:creator>mekael.itzik</dc:creator>
      <dc:date>2019-03-11T16:31:02Z</dc:date>
    </item>
    <item>
      <title>Re: ftp passive mode</title>
      <link>https://community.cisco.com/t5/network-security/ftp-passive-mode/m-p/1296925#M792228</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Enable the FTP inspection in the global policy-map.  This will dynamically open the PASV port ranges will NAT the PASV IP to it's public counterpart if necessary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;With this configuration, you will only need to open port 21 inbound for each host that is to connect via FTP.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; class inspection_default&lt;/P&gt;&lt;P&gt;  inspect ftp&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This link explain the fixup protocol&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.ciscopress.com/articles/article.asp?p=24685" target="_blank"&gt;http://www.ciscopress.com/articles/article.asp?p=24685&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 24 Oct 2009 02:54:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-passive-mode/m-p/1296925#M792228</guid>
      <dc:creator>Patrick0711</dc:creator>
      <dc:date>2009-10-24T02:54:36Z</dc:date>
    </item>
    <item>
      <title>Re: ftp passive mode</title>
      <link>https://community.cisco.com/t5/network-security/ftp-passive-mode/m-p/1296926#M792243</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thank you , it works!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 24 Oct 2009 12:59:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-passive-mode/m-p/1296926#M792243</guid>
      <dc:creator>mekael.itzik</dc:creator>
      <dc:date>2009-10-24T12:59:37Z</dc:date>
    </item>
  </channel>
</rss>

