Hi,
Custom inspection is done on ftp, port 21021.
The solution from the WB:
class-map CUSTOM_FTP
match port tcp eq 21021
policy-map global_policy
class CUSTOM_FTP
inspect ftp
My question is about the ftp keyword under the global_policy.
1. How does the ASA know that the new custom ftp port must also include
21021?
2. Will the ftp keyword also include port 21?
Thanks
Johan
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit
www.ipexpert.com