cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
478
Views
0
Helpful
2
Replies

How to block ftp traffic on PIX with Websense ?

p.tavan
Level 1
Level 1

Hello,

I want simply to block ftp traffic with Websense, without using Network Agent : so I have entered on the PIX (version 7.0) : filter ftp 20-21 0.0.0.0 0.0.0.0 0.0.0.0 0.0.0.0, but it does not block ftp traffic at all. Is it a known issue ? It seems we can filter only URLs with the PIX ? Because the following command shows no ftp traffic at all :

pixazlan(config)# sh url-s stat

URL Server Statistics:

----------------------

Vendor websense

URLs total/allowed/denied 637/633/4

HTTPSs total/allowed/denied 0/0/0

FTPs total/allowed/denied 0/0/0

Thank you,

Patrice

2 Replies 2

nkhawaja
Cisco Employee
Cisco Employee

may be some debugs and syslog will help here

how about trying

filter ftp 20 0 0 0 0

fiter ftp 21 0 0 0 0

command

thanks

Nadeem

Hello,

Thanks Nadeem, but I have tried this and it is not better. I think I have to activate spanning on the switch, in order to block protocols. Without spanning, it seems one can only block URLs !

Patrice

Review Cisco Networking for a $25 gift card