cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
818
Views
0
Helpful
1
Replies

Downloadable acl on PIX with Cisco ACS 3.2

andrea.meconi
Level 2
Level 2

I'm using virtual http server to authenticate inside user to a ftp server on outside interface of my pix.

After a successfully authentication process, the acl is downloaded correctly but when I try a ftp session the pix denies the access. Why?

Thanks.

Andrea.

1 Reply 1

owillins
Level 6
Level 6

Couple of things you could check:

Check if the ACL is allowing the ports used by FTP.

Is the PIX blocking dns which might be required for the ftp connection.

You could set up syslog on the PIX to see the messages and that would help you in troubleshooting the issue. Use the following link to configure a syslog server

http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_tech_note09186a0080094030.shtml