Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

setting up sftp cisco pix515e

Status
Not open for further replies.

dalew430

Technical User
Nov 27, 2006
30
0
0
US
I need to be able to ftp files from a directory on my server to an scftp site. We're using CoreFtp to do this and when I try to connect I get the following error:
SFTP connection error - Connection timed out
Can't establish connection --> scftp.xxxxxx.com:22
 
Do you have ftp inspection on?
The asa/pix won't allow secure ftp because it can't inspect the traffic. Also, is it active or passive?


Brent
Systems Engineer / Consultant
CCNP, CCSP
 
What is ftp inspection? I did some research on Cisco's website and it says that the PIX doesn't support sftp. The workaround might be to acquire an ftp client that supports clear data channel. I'm not sure what you mean by active or passive. I'm very new to cisco routers. Thanks.
 
the pix inspects traffic flowing through its interfaces. It knows certain protocols (ftp, www, https, smtp, ftp, etc.) it knows how those should behave and blocks unwanted behavior.

for 6.x its called "fixup"

read up on how ftp negotiates the data port from the command port. a quick google will explain it.


Brent
Systems Engineer / Consultant
CCNP, CCSP
 
We figured out ... thanks to all of you who responded. This is the best forum.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top