Cisco e20... directory personal

Hello

for business reasons, I have to separate phone book...

can I use a different LDAP catalogue on e20?

Hello Ivan.

I've not seen it described formally, but yes, you can use scp to transfer the file.

The easiest for you would be to add a few entries, download the file, understand the syntax.

Change it and download it again.

The root account should be enabled on the endpoint. You can find the file under:

/config/Pb.XML

You may need to reboot endpoint after you have downloaded the file.

Ivan: Please note my answers by using the stars under the messages!

Tags: Cisco Support

Similar Questions

  • Any directory on Cisco E20

    Hi all

    I seem to have a problem with the phone book from TMS to my Cisco E20.

    E20 software: TE4.1.1

    I have an account in my configuration directory that can be used.

    I am able to record my E20 and make calls.

    When to use this account on Jabber (Movi) I am also able to search the directory, but not on my E20.

    If the access control settings seem ok.

    If I'm not mistake this should be possible even if my E20 is not added as a system in the system browser right?

    Peter,

    Make sure that you put into service the following two configurations to your E20 for working directories:

    Type of directory server: VCS

    URL of the directory server: FQDN of the VCS

    To do this, the E20 must be able to reach the VCS via its FULL domain name. You can use the same SCV that you use to configure the E20.

    Hope this helps,

    Andreas

  • Configuration guide benefits of Cisco context directory Agent (CDA) and AAA (on ASA)

    Hello

    I would like to set up and test AAA on a Cisco ASA (5505 or 5510).
    1 are there any other tools or server required to use this feature? And you have good configuration guides?

    I already tested a CDA of Cisco. He was able to show users active directory and their IP equivalent.
    2. do you have a brief explanation what kind of opportunities I have with this server/tool? It is perhaps usable for the AAA mentioned on the SAA?

    Thanks in advance

    Best regards

    1. Yes, you need a Radius like Windows Server NPS or RADIUS server such as Cisco ACS/ISE server.

    2. He's just a man in the middle of the ADC, you will always need an AAA server: radius or Ganymede (see # 1).

  • What is the new Cisco context directory Agent?

    Hello world.

    I noticed on the ASA software download page the new content Agent directory (~ 800 MB).  I could not find the release notes or other references of a Google search.

    http://www.Cisco.com/Cisco/software/release.html?mdfid=280582808&softwareid=280775065&release=8.4.4.Ed&flowid=4822

    What is it?

    A

    Agent directory context is the successor to agent AD product. It provides similar features buit comes with the Linux distribution and has a GUI based interface. You reason that the link you gave there is no posted documentation. You'll have to dig around

    The product AD Agent release notes are at: http://www.cisco.com/en/US/docs/security/ibf/release_notes/ibf10_rn.html

  • Custom wallpaper Cisco E20 USB

    Hi all

    I've recently updated one of our E20 products to the latest version of the TE4.1.1 software

    Now I want to change the wallpaper using the USB port, which deserves to be supported according to the Release Notes, but it does not work.

    When I insert the USB key with a few pictures on it (jpg, png and gif files) and I'm going to ' Menu > Wallpaper > get personalized USB wallpaper "it keeps saying"insert a USB key with image files to import a custom wallpaper.

    Are there specific dimensions, types for images?

    I tried .jpg, .png, .gif. JPG and 1280 x 720 images.

    Best regards

    Peter

    Hi Peter,.

    .PNG in 1280 x 720 should be good. One thing to check is that your USB drive is formatted as FAT, I don't know if the E20 will be able to mount filesystems more "sophisticated".

    -Andreas

  • Cisco ACS 4.2: The most important to back up files?

    Dear Sir

    Can you tell me what are the most important files to back up in the Cisco ACS directory?

    Currently, I am only backup (with Symantec Backup Exec):

    C:\Program Files\CiscoSecure ACS v4.2\CSAuth\System backups

    * But, I would like to know if my server crash, can I restore the entire configuration with the files listed in the directory below? (Users, groups, groups of devices, AD, mapping, users, groups,...)

    * The Cisco ACS there change in the Windows registry?

    * Is it necessary to reinstall the Cisco ACS, if I need to put in an emergency on a new server? I guess Yes, because the installation creates services, etc.

    I ask this question because it takes time to install the patches...

    * Or, can I save all the Cisco ACS directory... On a new server, install the Cisco ACS and restore the backup?

    Thank you very much for giving me your experience about it.

    Kind regards

    You should back up the files that come from ACS backups, i.e.

    System configuration > backup GBA, the location that is specified in this section.

    And the default location is the one that already save for example "C:\Program Files\CiscoSecure ACS v4.2\CSAuth\System backups"

    In case you are required to host ACS on a new server, you would be required to re - install the complete application of the CSA and then simply take the last backup and restore in the newly installed ACS. It will be to restore everything users, group etc. to etc. of the external database mappings.

    When you install ACS on a new server, then make sure that if you run them Services ACS with a service account (this is required for the authentication of the window according to your requirement), you would be required to run new services with this account too, and which may require that go you through the following documentation.

    http://www.Cisco.com/en/us/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/installation/guide/Windows/postin.html#wp1041202

    Kind regards

    Prem

    Please rate if this can help!

  • Update Tandberg E20 TE2.1.0 TE4.1.0. Encrypt or not encrypt?

    Hello

    I am CCNP, but a beginner VOIP, just took a new job.  That is why the first VOIP LAN.

    I upgraded my LAN using switches of WS-C3560X.  I'm upgrading 60 Tandberg E20 video phones from TE2.1.0 to TE4.1.0 because of the E20 not finding the vlan voice.

    I use Avaya S8800 Server CM 5.2.1 with Avaya phones model 9640D01A-1009 and model Tandberg E20 video phones.

    I am trying to decide which software to use; with encryption or no encryption.

    Software Cisco E20

    S52100te4_1_1.pkg AES encryption

    No encryption s52101tenc4_1_1.pkg

    Q1.  What's being encryption?  Voice traffic is the obvious answer to this, no?

    Q2.  This device is at the other end of the encryption?  CM or telephone

    Q3.  Since the appeal will go outside my Avaya CM (ie. call to the outside world), encryption important?

    Thank you for your time and effort.

    Scott

    Hello.

    S52100te4_1_1.pkg AES encryption for the countries where the AES encryption are allowed.

    No s52101tenc4_1_1.pkg encryption is the countries where VOIP encryption is not allowed by law.

    You have only one key to unlock for one of them, so there is really no other choice.

    You can choose to disable encryption on the TE4 version (so it will have the same function as the TENC4), but you are not able to activate encryption on the TENC4.

    TE4 encryption is disabled by default, in any case, if the different software versions are here just for the legal question.

    Q1: Call for installation and the RTP stream can be configured to be encrypted on TE4.

    Q2: Endpoint or device interop

    Q3: It depends if your Avaya CM supports encryption or not.

    Thank you

    Marius

  • Double entries directory Jabber

    Question: See 2 inputs for users of Jabber - 1 with their address Findme and others with their device address

    Model Fineme address: [email protected] / * /

    Model of device address: [email protected] / * /

    I have a phone book-like 'Cisco Provisioning directory TMS' source. It is related to 1 particular user of TMS - PE directory.

    If I do not here consider the contacts, I see only 1 SIP contact jacquard Fineme address: [email protected] / * /. What is expected.

    Now, this phonebook source is connected to a telephone directory.

    If I do not here consider the contacts, I see 2 SIP contact. 1 jacquard Fineme address: [email protected] / * / and other devices address jacquard: [email protected] / * /.

    So, if users serach for a user on the phone book. They are presented with 2 phone book entries - confusing.

    Comment:

    This double entry shows that the research of usernames which are put into service. If get us a user name that has not been implemented in the recent past, we see only 1 entry for SIP.

    So, for any user that has been implemented in the past-, we see the Findme address and address of device in the directory.

    Is an expected behavior... ? No way to avoid it.

    Note:

    TMS 13.2.1

    Hello

    You may need to create a new source of the phone book and telephone directory and set this before you link to the phone book that the information may already be stored in the existing directory.

    / Magnus

  • TC7 contact list import

    Someone at - it something for bulk import/export of local contacts stored on one point endpoint TC7?  I found this link https://supportforums.cisco.com/discussion/11553236/cisco-e20-custom-pho... but it comes to connect as root, which is not available in TC7 without the help of TAC.

    Thanks, Mike

    See: root-access-tc72-devices

    As I say in this discussion, there is not a way to do this.  It might be possible if you can talk with TAC and to gain access to the account remotesupport, with that said I am not sure what is available with this account and if it would be possible to make changes to the local telephone book in bulk.

    I'd be fine if they would allow us to make changes in block of the local telephone directory via the web interface, including import and export.

  • EA6500 unable to connect to the router after Time Machine

    Just got an EA6500 - updated to the latest firmware available.

    I have attached 2 x WD NAS and 1 x WD through the USB port of the device.

    Each time after I finished running Time Machine on the MacBookPro (written to one of the WD NAS), I can no more connection to the router as neither the local IP, or the cisco connect cloud. The error message I get (loosely formulated) is: unable to connect to the router. Please ensure that the router is connected to the internet.

    At this point, all the devices connected to the router (wired and wireless) still can access Internet perfectly. Only the console of the router is therefore more accessible.

    Anyone else have the issue?

    Any ideas on how to solve it?

    Contact support for Cisco and the person advised me to do a factory reset (even if the router is new with no customization!). Regardless, it now works correctly. Cisco Cloud Connect works always before, during, and after a Time Machine.

    "When in doubt, try to turn the grid and the.

  • Linksys E1200 with Verizon Fios Actiontec

    Hello. I bought the E1200 Linksys because it is Wireless N and the guest account. Please help me configure my new router Linksys E1200 to use for Wireless N instead of my Verizon Fios provided Actiontec (model place M4124-WR), which is only G wireless, and so that I can use the guest account. I have an ethernet cable from one of the 4 ethernet ports on the E1200 to one of the 4 ports LAN on the Actiontec. I have the wireless off on the Actiontec and have the E1200 defined as 192.168.1.200.

    My Wireless N signal seems to work very well in the E1200 and I managed to activate the account invited on the E1200 and 'connect' on my iPhone 4, but then when I open Safari I can't connect to the internet.

    Thanks for trying to help, but I had worked after a phone call with a cisco/linksys support person. I had to make the following changes:

    The default gateway on Linksys E1200 after a hard reset is 192.168.1.1... I had to change the default gateway on Linksys E1200 to 192.168.5.1

    Connected to port LAN 1 of the Actiontec to the Internet on the Linksys E1200 port.

    Connected to the computer to port LAN 1 Linksys E1200.

    Off the Linksys E1200 and the modem (Actiontec) for 30 seconds. Then, back on the Actiontec until what the internet light turned on, and then turned back on Linksys E1200.

    Made sure that the wireless security page has been set to WPA2/WPA Mixed Mode because apparently the acct comments not use WPA WPA2.

  • For RV215W 4G Modem compatibility

    Hoping someone can tell me what 4 GB USB modems are/are not compatible with the Cisco RV215W? I am told by a customer that a MF823 (Telstra) modem does not work and that it is not compatible.

    Thank you

    Yes, there are some options/sources where to find modems of the updated support list:

    • Other items of discussion of the Support Forums as I post before
    • Release notes which usually contains lists of newly added USB modems (IE compatible), like here for the latest version of the firmware on the router RV215W ("problem solved: AC320u Sierra 313u and Huawei E173 dongles do not work with the device." "").
    • Another option is to open the "Small Business routers" section of this forum, type your model of router (for example, RV215W "") in the upper right search box and keep the "Small business routers" option selected that appears when you type, and then press ENTER. In the new page click on the "Documents" tab to see all the relevant documents for your model and you will see the modem compatibility lists documents here. It is more common elsewhere how Cisco share their personalized with information documents additional community on their products. And here, you'll find this last list of modems supported (from October 2014) for your model of router.
    • Or go directly to the page of the Cisco Knowledge Base , product list, select "Routers" and list your model of router and understand a few key words such as "usb", you will find the same document here.
  • CiscoUnity_DSAD event 1044 repeated for a domain

    Hi all -

    4.2 (1) of the unit; Exchange 2003 SP2 offbox. We receive the following errors on one of the 3 servers of unity in our forest. Repeated occurrences of 1044 event for a specific domain. The error is ERROR_DS_NO_ATTRIBUTE_OR_VALUE: the specified directory service attribute or value does not exist. I have attached a WORD doc with the micro traces of AvDSAD during synchronization attempt. We currently do not have subscribers of unity in this area, but we have Distribution lists in this area which include subscribers to unity. What I think is interesting, is that this area seems to have renamed the xyz Users OU. If you read microphone attached track, look for the text I have in bold and a section I highlighted in red. Finally, we will have unity subscribers in this area and I wanted to see if he would have no problem coming.

    Thanks in advance! Ginger

    Hi ginger,

    During synchronization, directory services to retrieve a list of groups to which each Subscriber and try to read each group to see if there's a PDL (a ciscoEcsbuUMLocationObejctId attribute). If you have groups in a container that you have not been selected in the Permissions Wizard (for example, because you do not use these groups as Cisco Unity PDLs), and if the groups are users who are also subscribers Cisco Unity, directory services are trying to read the groups and will fail because the directory

    services account has sufficient permissions.

    If the directory services account does not have permission to read a group, Cisco Unity wrote a synchronization object error in the Windows event log. If you have a large number of groups to which the directory services account does not have permissions, Cisco Unity can add a lot of object-synchronization errors in the event log

    Are getting you error 0x8007200A or 0x8000500d error code, for example, the last of them means not "defined" (as the requested attribute has no value) and are not real errors in EV.

    "What I think is interesting, is that this area seems to have renamed the xyz Users OU."

    What is the current value in the directory?

    You can use the tool of proptest DOH (DPT). AD Monitor | Field | Then you will have several options in the right part, try to match the correct values.

    HTH

    G

  • Procedure to change the CLI password for user directors

    Hello

    I have Cisco context directory Agent 1.0.0.011 installed by another Member of the team and I want to reset password admin CLI. Tracking how do to reset passwrod (DCO of admin password reset application) but I always connect with the old password.

    Can anyone provide some documents what would be the correct procedure to change/reset password for the user admin CLI? It's password during the original installation is complete.

    Thank you

    The command you typed: application ACD reset admin password changes the password for the application of cda admin only.  This is the admin of WebGUI.

    To change the password for the CLI, try the following command:

    Enter the Configuration mode.

    Run the username password plain | hash role admin | user command

    For example: username, password admin hash Cisco123 admin role

    The words in bold are provided by you.

    Please rate useful messages and mark this question as answered if, in fact, does that answer your question.  Otherwise, feel free to post additional questions.

    Charles Moreton

  • Access and download FTP on VPN problem

    Ok

    Here's my situation, we connect to Cisco ASA 5505 on IPSEC VPN cisco forwards the request to our router Juniper.  What we do on the VPN works exept FTP #1

    Here I am the Cisco config (with personal information removed).

    problem in society is the IP addressing as been IMO butched

    We have 6 guests

    1.0

    2.0

    3.0

    4.0

    5.0

    6.0

    Since most routers use 0,0 1,0 or 2,0 most of our clients cannot connect to the VPN, then my boss set up our Juniper to translate the IP address

    So make us 202,0 access 2.0

    Example if to access a server in 192.168.2.220 in RDP that write us in windows RDP 192.168.202.220 and converts of Juniper data 2,220 and everything works fine

    EXCEPT FTP.

    The FTP server is 192.168.2.19

    So if I write in IE or Firefox (ps file zilla does not work)

    FTP://192.168.2.19  I get the list of files. but when I click on a folder or file, I get a time-out error.

    so that if I do ftp://192.168.202.19 I don't even no initial registration.

    If I look in the Juniper I can see data entry

    So the problem seems to be coming back from the Juniper or cisco.

    The FTP server is also part 3, so when I called the company to see if it is active or passive.  They said that it is both.

    I guess that the problem comes from the Juniper but still take a chance

    ASA Version 8.2 (1)
    !
    Terminal width 250
    router host name
    activate the encrypted password
    encrypted passwd
    names of
    !
    interface Vlan1
    nameif inside
    security-level 100
    IP 192.168.192.2 255.255.255.252
    !
    interface Vlan2
    nameif outside
    security-level 0
    IP x.x.x.x 255.255.255.248
    !
    interface Ethernet0/0
    switchport access vlan 2
    !
    interface Ethernet0/1
    !
    interface Ethernet0/2
    !
    interface Ethernet0/3
    !
    interface Ethernet0/4
    !
    interface Ethernet0/5
    !
    interface Ethernet0/6
    !
    interface Ethernet0/7
    !
    passive FTP mode
    grp_outside_in tcp service object-group
    Description Ports require for internal transfer
    EQ smtp port object
    EQ port ssh object
    access list inside-out extended ip allowed any one
    access list inside-out extended permit icmp any one
    permit no_nat to access extended list ip 192.168.0.0 255.255.0.0 10.250.128.0 255.255.255.0
    list access tunnel extended split ip 192.168.0.0 255.255.0.0 allow 10.250.128.0 255.255.255.0
    access-list 101 extended allow ip 10.250.128.0 255.255.255.0 192.168.201.0 255.255.255.0
    access-list 101 extended allow ip 10.250.128.0 255.255.255.0 host 192.168.202.19
    access-list 102 extended allow ip 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0
    access-list 102 extended allow ip 10.250.128.0 255.255.255.0 192.168.2.0 255.255.255.0
    access-list 103 extended allow ip 10.250.128.0 255.255.255.0 host 192.168.202.19
    access-list 103 extended allow ip 10.250.128.0 255.255.255.0 192.168.203.0 255.255.255.0
    104 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.204.0 255.255.255.0
    104 extended access-list allow ip 10.250.128.0 255.255.255.0 host 192.168.202.19
    105 extended access-list allow ip 10.250.128.0 255.255.255.0 host 192.168.202.19
    105 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.205.0 255.255.255.0
    106 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.206.0 255.255.255.0
    106 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0
    114 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.214.0 255.255.255.0
    114 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.201.0 255.255.255.0
    114 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0
    114 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.203.0 255.255.255.0
    114 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.204.0 255.255.255.0
    114 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.205.0 255.255.255.0
    114 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.206.0 255.255.255.0
    access-list 200 scopes allow ip 10.250.128.0 255.255.255.0 192.168.203.0 255.255.255.0
    access-list 200 scopes allow ip 10.250.128.0 255.255.255.0 192.168.204.0 255.255.255.0
    access-list 200 scopes allow ip 10.250.128.0 255.255.255.0 192.168.205.0 255.255.255.0
    access-list 200 scope allow ip 10.250.128.0 255.255.255.0 host 192.168.202.19
    400 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.201.0 255.255.255.0
    400 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0
    400 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.203.0 255.255.255.0
    400 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.204.0 255.255.255.0
    400 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.205.0 255.255.255.0
    400 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.206.0 255.255.255.0
    400 extended access-list allow ip 10.250.128.0 255.255.255.0 192.168.214.0 255.255.255.0
    access-list 201 extended allow ip 10.250.128.0 255.255.255.0 192.168.201.0 255.255.255.0
    access-list 201 extended allow ip 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0
    access-list 201 extended allow ip 10.250.128.0 255.255.255.0 192.168.206.0 255.255.255.0
    extended access-list of 500 permit tcp 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0 eq ftp
    extended access-list of 500 permit tcp 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0 eq ftp - data
    extended access-list of 500 permit tcp 10.250.128.0 255.255.255.0 192.168.202.0 255.255.255.0 gt 1024

    pager lines 34
    Enable logging
    timestamp of the record
    debug logging in buffered memory
    recording of debug trap
    asdm of logging of information
    Within 1500 MTU
    Outside 1500 MTU
    IP local pool mobilepool 10.250.128.100 - 10.250.128.130 mask 255.255.255.0
    ICMP unreachable rate-limit 1 burst-size 1
    ASDM image disk0: / asdm - 621.bin
    don't allow no asdm history
    ARP timeout 14400
    Global 1 interface (outside)
    NAT (inside) 0-list of access no_nat
    NAT (inside) 1 0.0.0.0 0.0.0.0
    Route outside 0.0.0.0 0.0.0.0 x.x.x.x 1
    Route inside 192.168.2.0 255.255.255.0 192.168.192.1 1
    Route inside 192.168.201.0 255.255.255.0 192.168.192.1 1
    Route inside 192.168.202.0 255.255.255.0 192.168.192.1 1
    Route inside 192.168.203.0 255.255.255.0 192.168.192.1 1
    Route inside 192.168.204.0 255.255.255.0 192.168.192.1 1
    Route inside 192.168.205.0 255.255.255.0 192.168.192.1 1
    Route inside 192.168.206.0 255.255.255.0 192.168.192.1 1
    Route inside 192.168.214.0 255.255.255.0 192.168.192.1 1
    Timeout xlate 03:00
    Timeout conn 01:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
    Sunrpc timeout 0:10:00 h323 0:05:00 h225 mgcp from 01:00 0:05:00 mgcp-pat 0:05:00
    Sip timeout 0:30:00 sip_media 0:02:00 prompt Protocol sip-0: 03:00 sip - disconnect 0:02:00
    Timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
    timeout tcp-proxy-reassembly 0:01:00
    dynamic-access-policy-registration DfltAccessPolicy
    the ssh LOCAL console AAA authentication
    Enable http server
    http 192.168.2.0 255.255.255.0 inside
    No snmp server location
    No snmp Server contact
    Server enable SNMP traps snmp authentication linkup, linkdown cold start
    Crypto ipsec transform-set esp-3des esp-md5-hmac floating
    life crypto ipsec security association seconds 28800
    Crypto ipsec kilobytes of life - safety 4608000 association
    Crypto-map dynamic dyn1 1 set transform-set floating
    Crypto-map dynamic dyn1 1jeu reverse-road
    mobilemap 1 card crypto ipsec-isakmp dynamic dyn1
    mobilemap interface card crypto outside
    crypto ISAKMP allow outside
    crypto ISAKMP policy 1
    preshared authentication
    3des encryption
    sha hash
    Group 2
    life 86400
    Telnet timeout 5
    SSH 192.168.2.0 255.255.255.0 inside
    SSH 192.168.192.0 255.255.224.0 inside
    SSH 10.0.128.0 255.255.255.0 inside
    SSH timeout 5
    SSH version 2
    Console timeout 0
    dhcpd outside auto_config
    !

    a basic threat threat detection
    Statistics-list of access threat detection
    no statistical threat detection tcp-interception
    WebVPN
    internal mobilegroup group policy
    internal mobile_policy group policy
    attributes of the strategy of group mobile_policy
    Split-tunnel-policy tunnelspecified
    Split-tunnel-network-list value split tunnel

    (User with the access restrictions section list)

    type tunnel-group mobilegroup remote access
    tunnel-group mobilegroup General-attributes
    address mobilepool pool
    Group Policy - by default-mobile_policy
    mobilegroup group of tunnel ipsec-attributes
    pre-shared key
    !
    Global class-card class
    match default-inspection-traffic
    inspection of the class-map
    class-map inspection_default
    match default-inspection-traffic
    !
    !
    type of policy-card inspect dns preset_dns_map
    parameters
    message-length maximum 512
    Policy-map global_policy
    class inspection_default
    inspect the preset_dns_map dns
    inspect the ftp
    inspect h323 h225
    inspect the h323 ras
    inspect the rsh
    inspect the rtsp
    inspect esmtp
    inspect sqlnet
    inspect the skinny
    inspect sunrpc
    inspect xdmcp
    inspect the sip
    inspect the netbios
    inspect the tftp
    !
    global service-policy global_policy
    context of prompt hostname
    Cryptochecksum:4d936450878b9803a1fdde1c7f0fd807
    : end

    I saw Application Layer Gateway (ALG of Juniper) give a problem with the FTP flow. Check to see if it is activated and flip on (or off) and try again your ftp.

    ScreenOS 6 + (Netscreen firewall), the command is 'get alg '. For ScreenOS 5.4 or lower is a hidden command ' get the registry nat vector | I FTP ".

    For the Juno (SRX Firewall) is to "see the alg decision."

Maybe you are looking for