Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations TouchToneTommy on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

cannot ftp with reflexive list

Status
Not open for further replies.

Guest_imported

New member
Jan 1, 1970
0
I cannot ftp outside of my own building. I am using static and dynamic nat as well as a reflexive access list which allows all types of outgoing traffice and specified incoming traffice. It allows incoming ftp and ftp data packets to any internal. I would greatly appreciate anyones help in this matter. Thanks.
 
int foo 0
ip access-group inlist in
ip access-group outlist out
!
!
ip access-list extended inlist
evaluate bla
permit ip any eq 20 any gt 1023 reflect alb
deny ip any any log
!
ip access-list extended outlist
permit ip any gt 1023 any eq ftp reflect bla
permit ip any gt 1023 any gt 1023 reflect bla
evaluate alb
deny ip any any log
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top