Hi,

 

Custom inspection is done on ftp, port 21021.

 

The solution from the WB:

class-map CUSTOM_FTP

     match port tcp eq 21021

 

policy-map global_policy

     class CUSTOM_FTP

           inspect ftp

 

My question is about the ftp keyword under the global_policy. 

1.  How does the ASA know that the new custom ftp port must also include
21021?

2.  Will the ftp keyword also include port 21?

 

Thanks

 

Johan

_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Reply via email to