i still can't make it work.... when i try to connect thru explorer i receive the message: "The folder 'ftp://ftp.site.name/' is read-only because the proxy server is not set up to allow full access." if i set the browser to use the port 8021 for ftp connection, it goes in timeout and thru filezilla i can only make it work using generic proxy HTTP/1.1 and not using native proxy.
Can anyone help me and tell me if i have to create new identities or new policies and how to configure my clients
It now works for me using the default native ftp configuration. I have only tried using the reflection X ftp client and this works fine. I added an identity to the ironport configuration to ensure the proxy server did not authenticate native ftp traffic.
If the ftp client does not support checkpoint or raptor authentication then add the identity and all should work sweet
Configuring proxy on internet explorer (IE) allows IE to use FTP over HTTP (when folder view is disabled). It does not use native FTP, hence you can't use the proxy settings. But we can use windows explorer to do native ftp proxying Please open up windows explorer (not internet explorer, ex: double click on "My Computer") and use the following URL in the address bar
# example when authentication is disabled on WSA ftp://USERNAME_FTP%40FTP_SERVER:PASSWORD_FTP@PROXY:PORT
# example when authentication is enabled on WSA ftp://USERNAME_FTP%40USERNAME_WSA%40FTP_SERVER:PASSWORD_FTP%40PASSWORD_WSA@PROXY:PORT
Please keep in mind that this is just a workaround. It does not promise it would work in all cases.
This is under the assumption that you are using "Checkpoint" for "Authentication Format"
PS: Folder view is not part of IE, it's part of windows explorer, which runs out side of IE
PS2: same technique can be used to curl native ftp traffic through a proxy
Microsoft KB on how to enable Folder View: http://support.microsoft.com/kb/217888
Login to the FXOS chassis manager.
Direct your browser to https://hostname/, and log-in using the user-name and password.
Go to Help > About and check the current version:
Check the current version availa...
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...