cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
664
Views
0
Helpful
2
Replies

FWSM with Proxy FTP error, help!!!!!!!!!!!!!!!!!!!!!!!!!!!!!

zhangjianping
Level 1
Level 1

I have 2 c6509 with one FWSM (3.2) in transparent mode on each chassis.Context1 for server1, and context2 for server 2 . A client in outside try to use proxy ftp, once issue 'proxy get texst.txt', the connection closed. Pls help

client> ftp

ftp> open server1

proxy open server2

proxy dir

proxy get test.txt

This scenario is ok when i tested withoug FWSM, or these two servers worked in one context

2 Replies 2

gfullage
Cisco Employee
Cisco Employee

The FWSM (or the PIX/ASA) does NOT allow FTP proxy connections. These are seen as a security risk and therefore denied. If you look at the syslog messages, you'll see a message similar to:

*****%FWSM-4-406002: FTP port command different address: 1.1.1.1(172.25.8.81) to 172.30.201.24 on interface inside******

Thanks Sir.

Pls inform me how to resolve this issue.

The customer donot want to change the network structure, so is there any Command or ACL or other way to allow this application on FWSM?

You suggestion will be appreciated. thanks

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card