Is there a command in ASA equivalent to "ip tftp source-interface" in IOS?

Unanswered Question
Aug 28th, 2007

Is there a command in ASA equivalent to the IOS command "ip tftp source-interface"?

We have a L2L VPN connection that only encrypts traffic from the inside LAN of the ASA, to an External Operations Center LAN. The TFTP server resides on the Operations Center LAN, unfortunately, when I issue the command "copy startup-config tftp://..." the ASA sources from it's Outside address (seems logical) the content doesn't get encrypted and of course, the packets get dropped. Seems like the only way to encrypt the traffic (with the current configuration) is by sourcing my TFTP from the inside interface. Anyone has had this issue? Has anyone fixed this issue? I will appreciate any inputs.

I have this problem too.
1 vote
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Nelson Minica Wed, 06/03/2015 - 11:38

Looks like ;int=inside also works:

copy tftp://x.x.x.x/filename;int=inside flash:

v_terekhin Fri, 01/22/2016 - 06:23

but if it should be Vice versa. Save the file with a cisco VPN via the ASA INSIDE interface?


This Discussion