PIX 506 FTP ACCESS and NSLOOKUP

Unanswered Question
Aug 13th, 2008
User Badges:

We currently have a FTP server on our DMZ. We are unable to acces the FTP server from an internal host even though their is an ACL present and we see the ACL taking hit counts. If we use NSLOOKUP on the host trying to access the FTP server and then try to connect we are able to connect. However after a while it times out and NSLOOKUP has to be intoated again. Has anyone ever seen or herd of this? I dont understand why typing NSLOOKUP allows a connection to the FTP server.

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Marwan ALshawi Wed, 08/13/2008 - 03:20
User Badges:
  • Purple, 4500 points or more
  • Community Spotlight Award,

    Best Publication, December 2015

do u have the FTP inspection enabled in ur firewall ?

niall-wilkins Wed, 08/13/2008 - 03:47
User Badges:

Inspect FTP is enabled but its in an access-group applied inbound.

Farrukh Haroon Wed, 08/13/2008 - 04:16
User Badges:
  • Red, 2250 points or more

I doubt there is a relation between the two. You have to check a little more frequently to see what exactly is happening.


If possible post more information about the configuration (NAT/ACL) and topology etc.


Regards


Farrukh

Actions

This Discussion