<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: FTP coonection reset issue in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036944#M894600</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The Conf file is attached.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i try to upload any files on ftp server (#.#.4.41) then it works fine for 5 to 10 minutes after that connection gets lost. When i try to download anything again it works again for couple of minutes and connection gets reset.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Log : 3	Oct 24 2008	14:58:16	305005	#.#.4.41	4882			No translation group found for tcp src inside:123.236.38.235/2288 dst outside:#.#.4.41/4882  Please Advice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;123.236.38.235 its a my home public IP and the connection was eastlablished with FTP Server #.#.4.41 which is placed in DMZ Zone but look at the above log which shows the Src is in Inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 24 Oct 2008 17:40:54 GMT</pubDate>
    <dc:creator>ray_stone</dc:creator>
    <dc:date>2008-10-24T17:40:54Z</dc:date>
    <item>
      <title>FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036940#M894596</link>
      <description>&lt;P&gt;I have been experiencing FTP connection reset issue while uploading files.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have reviewed the logs and found log 305005: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3|Oct 24 2008|02:23:51|305005|*.*.4.41|3983|||No translation group found for tcp src inside:*.*.71.252/4708 dst dmz:65.205.4.41/3983&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can anyone help me out what should i do to fix this issue ASAP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 14:02:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036940#M894596</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2019-03-11T14:02:07Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036941#M894597</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Seems to be a NAT problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you post the config and let me know from where you try to connect and to where?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Krisztian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Oct 2008 10:31:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036941#M894597</guid>
      <dc:creator>kerek</dc:creator>
      <dc:date>2008-10-24T10:31:38Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036942#M894598</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To do trobleshoot, I captured the packets on DMZ interface and found Spoofing Attack from Inside Network and whatever the connection is made on outside to DMZ for FTP access, the same connection is also making from Inside to DMZ Network and while it makes the connection then FW reset all connection. &lt;/P&gt;&lt;P&gt;Exp :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Outside Machine : 1.1.1.1&lt;/P&gt;&lt;P&gt;DMZ FTP Server  : 2.2.2.2&lt;/P&gt;&lt;P&gt;Inside Network  : 192.168.10.0/24&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The connection between 1.1.1.1 and 2.2.2.2 is created and its working fine but when the same connection makes on Inside Interface which is already made on DMZ Interface then the FW reset the all connections and the geniune connections also gets denied.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please Advice how to resolve this issue as I have checked through Sniffer on Inside host and found nothing any unwanted things.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Oct 2008 12:11:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036942#M894598</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-10-24T12:11:17Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036943#M894599</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you post the config?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Krisztian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Oct 2008 12:31:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036943#M894599</guid>
      <dc:creator>kerek</dc:creator>
      <dc:date>2008-10-24T12:31:42Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036944#M894600</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The Conf file is attached.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i try to upload any files on ftp server (#.#.4.41) then it works fine for 5 to 10 minutes after that connection gets lost. When i try to download anything again it works again for couple of minutes and connection gets reset.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Log : 3	Oct 24 2008	14:58:16	305005	#.#.4.41	4882			No translation group found for tcp src inside:123.236.38.235/2288 dst outside:#.#.4.41/4882  Please Advice&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;123.236.38.235 its a my home public IP and the connection was eastlablished with FTP Server #.#.4.41 which is placed in DMZ Zone but look at the above log which shows the Src is in Inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Oct 2008 17:40:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036944#M894600</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-10-24T17:40:54Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036945#M894601</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It look like as an attack (Spoof) but dont able to understand how to find out the root cause. Please share your experience. Thanks!!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 24 Oct 2008 17:43:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036945#M894601</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-10-24T17:43:36Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036946#M894602</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can anyone advice on this. Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 25 Oct 2008 01:45:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036946#M894602</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-10-25T01:45:41Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036947#M894603</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In your first post you mentioned ftp, but the ports are not really ftp ports (unless u use passive ftp).&lt;/P&gt;&lt;P&gt;I don't really understand how the traffic which is coming through the outside is seen as inside.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Krisztian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Oct 2008 08:51:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036947#M894603</guid>
      <dc:creator>kerek</dc:creator>
      <dc:date>2008-10-27T08:51:41Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036948#M894604</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The other problem can cause problems is using a translated IP which actually resides on the Outside i.e. static (dmz,Inside) #.#.4.41 192.168.200.11 netmask 255.255.255.255 dns&lt;/P&gt;&lt;P&gt;I have tried out similar mapping on my ASA and got 'portmap translation creation failed'.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try to use something different IP (or not translate at all).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope it helps,&lt;/P&gt;&lt;P&gt;Krisztian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Oct 2008 09:04:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036948#M894604</guid>
      <dc:creator>kerek</dc:creator>
      <dc:date>2008-10-27T09:04:46Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036949#M894605</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have delteted that entry but still getting same error message and it's resetting the connections too. After removing that entry I have done reload the FW but still getting same error. Pl. help. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Oct 2008 13:58:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036949#M894605</guid>
      <dc:creator>ray_stone</dc:creator>
      <dc:date>2008-10-27T13:58:14Z</dc:date>
    </item>
    <item>
      <title>Re: FTP coonection reset issue</title>
      <link>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036950#M894606</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you do from cli:&lt;/P&gt;&lt;P&gt;show log | inc 65.205.4.41&lt;/P&gt;&lt;P&gt;just to see what's happening?&lt;/P&gt;&lt;P&gt;Can you also post the output of 'show xlate'&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Krisztian&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 27 Oct 2008 14:25:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/ftp-coonection-reset-issue/m-p/1036950#M894606</guid>
      <dc:creator>kerek</dc:creator>
      <dc:date>2008-10-27T14:25:10Z</dc:date>
    </item>
  </channel>
</rss>

