Does the below config allow (just from a NAT perspective)hosts on the 10.1.1.0 subnet to access servers on the 192.168.1.0 subnet?
It this NATing the FTP interface to the 10.1.1.10 address?
if so, would this over rule any access-list that was applied inbound to the FTP interface preventing anything from the 10.1.1.0 subnet?
global (ftp) 1 10.1.1.10
nat (inside) 1 0.0.0.0 0.0.0.0 0 0
ip address inside 10.1.1.1 255.255.255.0
ip address ftp 192.168.1.1 255.255.255.0