Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

PIX FTP Passive

Status
Not open for further replies.

evildik

MIS
Sep 2, 2003
39
0
0
US
Help!

I have a windows client app that uses a automated ftp session. As you know Windows cmd ftp does not allow passive mode... How can i configure my pix so that active ftp will work...

FTP Scenario
Client --> firewall ---> internet ---> PIX --> webserver

The client connects to the ftp server without a problem but when you do a LIST it hangs and times out...


 
the following command should fix that:

fixup protocol ftp 21

but i'd like to see someone back me up on that because i'm still elarning myself.
 
I'll back you up if you like, that should sort it out for either active or passive ftp. Basically it tells the pix to expect traffic on another port (the ftp-data port, either 20 or a high number port, depending on whether you're using active or passive ftp) from the same host that you made the connection on port 21 to, shortly after that connection. So the pix dynamically opens that connection as it's normal anticipated behaviour.

So yes, that should do it :)

CCNA, MCSE, Cisco Firewall specialist, VPN specialist, wannabe CCSP ;)
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top