We have a Windows 2003 server running two FTP servers: one on port 21 for local IP phones and one on port 12345 for external access. I am interested in setting up the second server.
I test FTP on port 12345 on LAN and everything is fine. However I can not access it from the outside. We have a Cisco 877 ADSL router. I have mapped the port over with:
ip nat inside source static tcp 10.0.0.1 12345 interface dialer0 12345
And put this ACL on the dialer0 interface:
access-list 101 permit tcp any host 10.0.0.1 eq 12345
When I use SmartFTP Client to open, it always says Connection refused by host. I also have:
ip inspect name MYFIREWALL ftp
Do I miss anything? I think the ip inspect command may only apply to the standard FTP port (i.e. 21) and it doesn't inspect FTP on my 12345 port. How can I define an FTP inspect on a nonstandard port?
Thank you for your help.