Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

FTP extended passive mode vs inspect

Does the inspection on Cisco PIX or ASA os (7/8) support the FTP extended passive mode

http://en.wikipedia.org/wiki/Ftp

"In extended passive mode, the FTP server operates exactly the same as passive mode, however it only transmits the port number (not broken into high and low bytes) and the client is to assume that it connects to the same IP address that was originally connected to. Extended passive mode was added by RFC 2428 in September 1998."

Thanks in advance.

RT

2 REPLIES

Re: FTP extended passive mode vs inspect

Its supported in code 7.0 and later.

6.x code doesnt support it

Syed

New Member

FTP extended passive mode vs inspect

What about IOS?

7201 with IOS c7200p-adventerprisek9-mz.150-1.M8.bin

Zone Based Firewall

match protocol ftp

inspect

Had to disable EPRT and EPSV on the server, but it's not good idea, all new ftp clients tend to prefer them.

687
Views
0
Helpful
2
Replies