cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
458
Views
0
Helpful
3
Replies

PIX 506 FTP ACCESS and NSLOOKUP

niall-wilkins
Level 1
Level 1

We currently have a FTP server on our DMZ. We are unable to acces the FTP server from an internal host even though their is an ACL present and we see the ACL taking hit counts. If we use NSLOOKUP on the host trying to access the FTP server and then try to connect we are able to connect. However after a while it times out and NSLOOKUP has to be intoated again. Has anyone ever seen or herd of this? I dont understand why typing NSLOOKUP allows a connection to the FTP server.

3 Replies 3

Marwan ALshawi
VIP Alumni
VIP Alumni

do u have the FTP inspection enabled in ur firewall ?

Inspect FTP is enabled but its in an access-group applied inbound.

Farrukh Haroon
VIP Alumni
VIP Alumni

I doubt there is a relation between the two. You have to check a little more frequently to see what exactly is happening.

If possible post more information about the configuration (NAT/ACL) and topology etc.

Regards

Farrukh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: