cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1586
Views
0
Helpful
2
Replies

Unable to Run FTPS (FTP Over SSL) across ASA

grzegorzniecka
Level 1
Level 1

Dear all,

there was remote FTP - users behind ASA5540 can connect to it.

Now, with this ftp there is SSL/TLS encryption added and users behind this ASA can't connect to this FTPS.

It this possible for users behind ASA to connect to FTPSs?

Regards

2 Replies 2

Julio Carvajal
VIP Alumni
VIP Alumni

Hello,

One of my Tech-leads publish this article.

https://supportforums.cisco.com/docs/DOC-23206#comment-10969

I think this will help you a lot regarding this query.

Do rate all the helpful posts

Julio

Julio Carvajal
Senior Network Security and Core Specialist
CCIE #42930, 2xCCNP, JNCIP-SEC

Patrick0711
Level 3
Level 3

Configure your FTP server to send it's public IP address in the PASV response and define a static PASV port range.  You must then open the PASV range inbound in addition to port 990 (assuming you're using FTPS on the default port) for the clients who need to connection.  If you're running FTPS on port 21, you'll need to make sure that FTP inspection is disabled.

Review Cisco Networking products for a $25 gift card