Pix firewalls and FTP - "ftp", or "ftpdata"
 




IT Certification FAQ

 
|
Home
|
Microsoft
|
CISCO
|
CompTIA
|
Exam/Study FAQ
|
Employment FAQ
| Links  | Forums  |
Book Reviews


FAQFAQ  SearchSearch  MemberlistMemberlist  UsergroupsUsergroups  RegisterRegister  ProfileProfile  Log in to check your private messagesPrivate messages  Log inLog in

Pix firewalls and FTP - "ftp", or "ftpdata"

 
Post new topic   Reply to topic    Forum Index -> comp.dcom.sys.cisco
Author Message
thefunnel@aol.com
Guest





PostPosted: Thu Sep 13, 2007 8:53 pm    Post subject: Pix firewalls and FTP - "ftp", or "ftpdata" Reply with quote

Hi,

I would like to allow FTP access to a host on the inside of my Pix
525. I notice I can configure an access rule (via PDM). I notice I can
choose from "ftp" and "ftpdata" on the list of predefined services? Im
guessing this is ports 20 and 21. Unfortunately I can only choose one
at a time without creating a "service group" and adding both. This
seems a bit excessive as I thought FTP would be a common service to
allow inbound . Can I get away with just adding "ftp" or JUST
"ftpdata"

Many thanks,

Paul
Back to top
Lutz Donnerhacke
Guest





PostPosted: Thu Sep 13, 2007 8:53 pm    Post subject: Re: Pix firewalls and FTP - "ftp", or "ftpdata" Reply with quote

* thefunnel@aol.com wrote:
Quote:
I would like to allow FTP access to a host on the inside of my Pix
525. I notice I can configure an access rule (via PDM). I notice I can
choose from "ftp" and "ftpdata" on the list of predefined services? Im
guessing this is ports 20 and 21.

Only allow ftp (21/TCP). The other ports are automatically opened by the PIX
using fixup ftp or inspect ftp (which is default).
Back to top
Display posts from previous:   
Post new topic   Reply to topic    Forum Index -> comp.dcom.sys.cisco All times are GMT
Page 1 of 1

 

Copyright © 2002-2006 Web-S-Sense Pty. Ltd. All rights reserved.

Powered by phpBB
Advertising | Policies/Disclaimers | Contact us | Link to us


Featured Sites: Free Antivirus and Antispyware Info | Free PC Support | MCSE Directory