cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
246
Views
0
Helpful
1
Replies

Router FW IOS - Failing Active FTP

wilsons5
Level 1
Level 1

Has anyone experienced issues of failing active FTP when running IP inspect on a router with FW IOS. The issue I m experiencing is that all passive ftp sessions work with the ip inspect ftp command, but active fails. The router actually sends the client a Fin to end the connection.

I also have another router that successfully allows active FTP, but it has a higher latency between the router and FTP server.

I am running IOS 12.2(15)T17 with the FW/IDS feature set.

wilsons5

1 Reply 1

Not applicable

Traffic originating from an interface is not going to be inspected by the firewall and that the workaround is to open the access-list for that traffic This URL should help you:

http://www.cisco.com/warp/public/110/iosfwfaq.html