cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
410
Views
0
Helpful
3
Replies

Allow FTP, deny everything else on a Server

neww
Level 1
Level 1

As title says, I need to able access FTP only, everything else has to be denied.

I have to use ACL

Could you please help me? 

 

Thank you! 

 

wan

3 Replies 3

Hello

Can you elaborate a little on how this server is attached within your network, where is it residing and what device is provding the L3 routing and network security policy and where are you trying to access this server from?


Please rate and mark as an accepted solution if you have found any of the information provided useful.
This then could assist others on these forums to find a valuable answer and broadens the community’s global network.

Kind Regards
Paul

Joseph W. Doherty
Hall of Fame
Hall of Fame

First, understand, FTP is two way communication, so you might block all but FTP to the server, or all but FTP from the server, or both.

Second, ACLs are applied at L3 interfaces, i.e. do you need to block all but FTP to to other hosts on the same local network?

Third what side of the FTP communication will start FTP session, i.e. host or server, or both?

Fourth, do we care about FTP active vs. passive mode?

Lastly, is allowing FTP only to be on its "standard" ports or is FTP to be also allowed on non-standard FTP ports too?

Review Cisco Networking for a $25 gift card