FTPS through S160 webproxy ironport

We are using S160 ironport for Web as well as FTP proxy. Now we would like to add FTPS port 990 to go through ironport. We could access the target files through filezilla without using the proxy, but cannot do it if we use the proxy.
Could someone please advise what steps are needed for this to be achieved? Policy trace shows that no policy is matching this URL and 'URL Blocked'
Regards
saif

Hi,
You can try running the FTPS using the Socks proxy:
Step 1:
Configure a SOCKS service on the proxy (by default, this will listen on port 1080)
Step 2:
Configure the FileZilla '
Generic Proxy' to communicate to the ProxySG using SOCKS on port 1080
Step 3:
Configure Filezilla to communicate to the FTP server using FTP over TLS
Regards,
Kush

Similar Messages

  • Can't connect to FTP through FINDER   (other ftp clients work)

    I try to connect to my schools ftp icarus.engr.uconn.edu through finder's, Go -> Connect to Server
    but every time I try it tells me you have entered an invalid password or username. The thing is that I can connect to the ftp through any FTP client like filezilla or Cyberduck even the Terminal ftp program will connect, but not Finder. Finder tells me the password or username is invalid. ??

    Is it not prompting you? You can imbed your username or even your username + password in the URL.
    e.g.
    ftp://username@server
    or
    ftp://username:password@server
    There should be no issue connecting. BUT... the imbedded FTP in Finder only allows for downloads. You can't upload.
    You can upload via the command line FTP client, and of course a slew of 3rd party FTP clients (some of which you've already mentioned.)
    Message was edited by: Tim Campbell1
    Message was edited by: Tim Campbell1

  • FTP through ACE

    Dear Mister
    I need to pass FTP  through ACE, but the is not functioning.
    The FTP is not functioning using  VIP. It is a connection toward a NAT ip address. I have the next configuration:
    class-map match-all NAT2020-PRUEBA
      2 match source-address 10.40.20.20 255.255.255.255
    interface vlan 401
      description "Conexion a Servidores Reales CERT"
      ip address 10.84.255.10 255.255.255.248
    no shutdown
    interface vlan 450
      description "Conexion a FWSM-CERT"
      ip address 10.40.150.3 255.255.255.128
    service-policy input NATTEST
    no shut
    I need to do the NAT using the real IP 10.40.150.10.
    policy-map multi-match NATTEST
      class NAT2020-PRUEBA
    nat static 10.40.150.10 netmask 255.255.255.255
    In this scenary, the NAT is not functioning.
    I tried to user the next:
    switch/cert(config-pmap-c)# nat static 10.40.150.10 netmask 255.255.255.255 21 vlan 401
    But send the next message.
    Error: Invalid real port configured for NAT static
    switch/cert(config-pmap-c)#
    How I could fix this problem????
    Some inspect???
    Best Regards

    This should do what I think you want to do. THis also does source-nat. If you dont-t ewant this, then delect the class-maps ftp-810 & ftp-811 and the nat statements from vlan 468. Matthew
    rserver host 810
      ip address 1.8.1.10
      inservice
    rserver host 811
      ip address 1.8.1.11
      inservice
    serverfarm host sf-810
      rserver 810
        inservice
    serverfarm host sf-811
      rserver 811
        inservice
    class-map match-all ftp-810
      2 match virtual-address 1.9.1.209 tcp any
    class-map match-all ftp-811
      2 match virtual-address 1.9.1.208 tcp any
    class-map match-all vip-ftp-10
      10 match virtual-address 1.9.1.209 tcp eq ftp
    class-map match-all vip-ftp-11
      10 match virtual-address 1.9.1.208 tcp eq ftp
    policy-map type loadbalance first-match pm-ftp-10
      class class-default
        serverfarm sf-810
    policy-map type loadbalance first-match pm-ftp-11
      class class-default
        serverfarm sf-811
    policy-map multi-match lb-vip-10
      class vip-ftp-10
        loadbalance vip inservice
        loadbalance policy pm-ftp-10
        loadbalance vip icmp-reply
        inspect ftp
      class ftp-810
        nat dynamic 9 vlan 468
    policy-map multi-match lb-vip-11
      class vip-ftp-11
        loadbalance vip inservice
        loadbalance policy pm-ftp-11
        loadbalance vip icmp-reply
        inspect ftp
      class ftp-811
        nat dynamic 8 vlan 468
    interface vlan 468
      description Server vlan
      ip address 1.8.1.201 255.255.255.0
      nat-pool 9 1.8.1.209 1.8.1.209 netmask 255.255.255.255 pat
      nat-pool 8 1.8.1.208 1.8.1.208 netmask 255.255.255.255 pat
      service-policy input remote-access
    interface vlan 469
      description Client vlan
      ip address 1.9.1.201 255.255.255.0
      service-policy input lb-vip-10
      service-policy input lb-vip-11
    ip route 0.0.0.0 0.0.0.0 1.9.1.254

  • Carry out ftps through a CSS11501-SCA11000 ?

    Is it possible to carry out ftps through a CSS11501-SCA11000 ? If yes, please send me the details and a configuration example.
    rgds, Geert.

    Hi
    Can you check whether the following business function set were actviated
    Business Function LOG_EAM_CI_1
    Business function LOG_EAM_CI_2
    Regards
    thyagarajan

  • Q: FTP through java?

    Hello,
    I am trying to do an FTP through java. Does anybody know how I can spawn an FTP process and send ftp commands to it from my java program?
    I am on a Solaris system BTW.
    Thankyou in advance...

    I see you haven't assigned any duke dollars to your question. Let me tell you how does the Duke Dollar system work. Observe the following example...
    I know the answer.
    My rates are as follows:
    zero duke dollars - vague hint
    one to five duke dollars - +definite answer
    six to ten duke dollars - +full file/package name
    ten to fiteen duke dollars - +URL information
    more than fifteen duke dollars - +full URL with download information
    Pick your choice and select the appropriate answer:
    0 - There are premade classes that allow you to use FTP in Java.
    1 - 5 IBM have created a package that will allow you to do things that you desire.
    6-10 You should be looking for the FTP Beans Suite by IBM It comprises of two beans - the FTPProtocol bean and the FTPUI bean, both are very useful, especially in your situation.
    11-15 You can find this suite at http://www.alphaworks.ibm.com
    16+ go here http://www.alphaworks.ibm.com/ab.nsf/bean/FTP to add file transfer functions to your applications... without writing a line of code.

  • Not able to surf internet on win7 & vista OS through Proxy server Ironport S160

    Hi,
    Kindly can any one help me to know what is causing the issue here...
    I am not able to surf internet only from the machines running with the OS windows 7 and windows Vista..
    Regards,
    Lingaraj

    Lingaraj,
    Do you set the requirement for authentication in the identity used by the effected users/machines?
    Can you capture the access log from the S160 while browsing from the effected machine?
    To gather corresponding access logs:
    Make sure that the client used for testing is only running a single browsing session (tab) and ensure that any other applications that connect to the Internet are not running during this stage, e.g: Yahoo or MSN messenger.
    1. Log into the Command Line Interface (CLI) using SSH client, e.g.: Putty
    2. Type 'grep'
    3. Enter the number of the access log you wish to grep.
    4. Enter the regular expression to grep. This could be the IP address of the client that you use for testing.
    5. Do you want this search to be case insensitive? [Y]>  N
    6. Do you want to search for non-matching lines? [N]>  N
    7 .Do you want to tail the logs? [N]>  Y
    8. Do you want to paginate the output? [N]>  N
    9. Run a test now by going to a URL from the client machine.
    10. After capturing the appropriate logs, please press ctrl-c to stop displaying the current logs, copy the whole output and attach it to your next response.
    Regards,
    -Donny

  • FTP through proxy

    All,
    Is it possible to use the SAP XI FTP adapter through an internet proxy?  I don't find any configuration parameters to specify the ip-address and ftp-port.
    Kind regards, Guy Crets

    It seems impossible to specifiy the ip-address and port number of a proxy server.  Only the ip adress and port number of the ftp server can be specified.
    I want to connect with the FTP adapter to an FTP server somewhere on the Internet.  To go out of our network on to the Internet, I need to go through a proxy.
    Looking forward to your feedback/answers.
    Regards, Guy Crets

  • SAP Query into FTP through ABAP

    Hi Experts,
    I have an SAP query which needs to be run on a daily basis (through a back ground job) and the data that is pulled has to be stored in a file in tab delimited format and the same should be extracted to an FTP site. Can you please suggest ways for this?
    Thanks,
    Shashank.

    Hi ,
    Thanks for our reply.
    I have pasted some example code into my additional field which I have created in SAP Query But im not sure how the loop bit works and how I can populate the additional fields that I have created , could you please explain this
    CALL FUNCTION 'HR_READ_INFOTYPE'
      EXPORTING
        pernr                 = '000000019'
        infty                 = '01'
        BEGDA                 = '18000101'
        ENDDA                 = '99991231'
      tables
        infty_tab             = p0008
      EXCEPTIONS
        INFTY_NOT_FOUND       = 1
        OTHERS                = 2
        LOOP AT p0008.
    NOT SURE WHAT TO PUT IN THIS SECTION *****
      ENDLOOP.
    I have created 3 additional Fields in the infoset Current FTE ,FTE1 FTE2 , and I want to loop through the records and populate the relevant Additional field with the employees FTE  (I only want to populate  where there is a change)
    Sample Data
    Begda              Endda             FTE        Salary
    1/1/2010         31/12/999       60%         19K          (Current  FTE)
    01/08/2009     31/12/2009     100%       27k           (FTE1)
    01/07/2008     31/7/2009         50%       17K          (FTE2)
    Thanks in anticipation
    DM

  • RT:Why I can't make an ftp through explorer?

    Dear members,
    Actually I have a problem with the browser to connect with the target.
    My system is a peer to peer PC desktop.
    I am able to deploy and run the application without troubles and also the data exchange via the measurement and automation explorer
    works fine.
    The problem is when I try to estabilish a connection via ftp or http to the target.
     I type the usual URL: ftp://160.40.10.20/NI_RT/SYSTEM/WWW/  where the IP address is the target address and ...page cannot be displayed.
    I'm sure the firewall is inactive and I set the pop-up and security at the minimal level.
    The Web configuration in the real time target properties is so set:
    TCP/IP  box checked
    In the computer acess list I wrote the IP addresses of the target and the host
    Webserver active checked
    Webserver Browser access  I wrote the Host  IP address
    User access   I placed the Host IP
    Someone has idea what I made wrong?
    Bye
    Principiant
    Solved!
    Go to Solution.

    Thanks for the suggestion but I solved the problem finally.
    The fact is that I use a Peer to Peer connection but the host or better IE on the host has been configured for a LAN connection. This means anytime it searches an address he wants to go through the Gateway and since the gateway is not connected....
    The solution is quite straightforward:
    Starting from the tool bar of IE  follow the path Tools>>Internet Options>>Connections>>LAN Settings>>Advanced..
    Then in the field Exceptions (address which do not need a proxy connection) write the target IP address or if more than one the trgets addresses separated from a semi colon and that' s it.
    So said it seems easy....
    Principiant  

  • FTP through JAVA

    Hi, I'm writing an application to transfer (get) some files from multiple solaris servers periodically for pot processing. I've used a socked connection at port 21 and successfully established a connection. The problem i'm havng is that each other command than PWD and CWD are being rejected with message "command not understood".
    I'm writing this app for windows platform. Can anybody please come up with suggestions as i'm badly stuck!
    Thanks\\
    Haroon Mughal

    HI everyone,
    You can use the com.sun package. There they have a FTPClient class.
    Alternatively you can connect to a ftp site using the URL class as below
    URL url = new URL("ftp://user:[email protected]/polo.zip");Connect to the site and get the inputstream and read the file using streams.
    If your ftp site uses normal url without the pass and username then simple use the Authenticator class to authenticate yourself in if you need authentication
    Let me know me know whether it works
    Richard West

  • FTP Through 2800

    I am wanting to swap a 2600 out with a 2800.
    We do application here and one client is behind the said 2600. They do FTP transactions and a few months back when they started this process we fixed the issue by adding the following commands onto the 2600
    ip inspect name Ethernet_0_0 ftp
    and then
    intf 0/0
    ip inspect Ethernet_0_0 in
    Intf 1/0
    ip inspect Ethernet_0_0 in
    I copied the config to the 2800 and made adjustments were the intfa names changed and all works great with the exception of FTP. 2600 is back in place until I can get 2800 working.
    Cheers,
    Brent Austin

    wrong forum.
    Go try the security forum.
    Gilles.

  • Ftp through ASA stuck @ Opening data connection

    hi,
    i have a problem with an ASA and connect from outside to an inside ftp server. The connection stuck at Opening data connection....
    [R] 227 Entering Passive Mode (<external ip>,198,49).
    [R] Opening data connection IP: <external ip> PORT: 50737
    [R] QUIT
    [R] 221  Have a nice day.
    [R] Logged off: <external ip>
    I have configured an ACL for FTP and FTP-DATA and activate inspect rule.
    Any suggestions?
    Thanks and regards
    Jason

    Hi Sankar,
    I dont know if you are able to assist as i am having a similar issue.
    I had issues in the past  connecting to external ftp sites so i created an inspection rule on my wan interfaces and ask any staff trying to connect to any ftp site to send me the ip address so i can add under the inspection rule and this has always worked for me.
    I had to do this because we also have ftp sites internally that people try to connect to from outside too.
    But lately ,i have done this for an external ftp site and it connects but doesnt list directories.
    The log message is
    terminated by inspection engine,reason -inspector drop reset.
    Below is the internal host trying to connect to the ftp server service policy command output :
    External ftp server is 81.144.145.6.
    # sh service-policy flow tcp host x.x.x.x host 81.144.145.6 eq ftp
    Global policy:
      Service-policy: global_policy
        Class-map: cmap
          Match: access-list TCP
            Access rule: permit tcp any any
          Action:
            Input flow:  set connection advanced-options tmap
        Class-map: netflow-export-class
          Match: access-list netflow-export
            Access rule: permit ip any any
          Action:
            Output flow:  flow-export event-type all destination 10.120.3.226 10.120                                                                                        .16.220
        Class-map: class-default
          Match: any
          Action:
            Output flow:
    Interface MAN_CORE_TO_WAN:
      Service-policy: STV_IPS_POLICY
        Class-map: STV_IPS_CLASS
          Match: access-list STV_IPS_ACL
            Access rule: permit ip any host 81.144.145.6
          Match: default-inspection-traffic
          Action:
            Input flow:  inspect ftp
        Class-map: class-default
          Match: any
          Action:
            Output flow:
    Interface MAN_CORE_TO_WAN_ELXSI:
      Service-policy: STV_IPS_POLICY
        Class-map: STV_IPS_CLASS
          Match: access-list STV_IPS_ACL
            Access rule: permit ip any host 81.144.145.6
          Match: default-inspection-traffic
          Action:
            Input flow:  inspect ftp
        Class-map: class-default
          Match: any
          Action:
            Output flow:
    Interface MAN_CORE-TO-WAN-THUS:
      Service-policy: STV_IPS_POLICY
        Class-map: STV_IPS_CLASS
          Match: access-list STV_IPS_ACL
            Access rule: permit ip any host 81.144.145.6
          Match: default-inspection-traffic
          Action:
            Input flow:  inspect ftp
        Class-map: class-default
          Match: any
          Action:
    I just cant understand why it has worked for tens of external ftp sites and it doesnt work for this particular one.
    Cheers

  • Slingbox and ftp through HH2

    Since changing from HH1 to HH2 my slingbox has been very hit and miss
    even using port forward.com sometimes the i cannot watch using laptop but can see it using my iphone app.
    have never been able to FTP into my PC  at home and BT dont issue fixed ip addressess any more
    Do i get a non BT router which is easy to port forward ?? Dynamic DNS is that an option ??
    Getting fed up with the stupid BT version that cannot retain any of its Port forwards for more than a week thats
    if it has accepted them in the first place.
    Anyone any ideas ??

    Actually just solved it. I don't know why, but hey it works....
    Before: I had a Linksys WRT54G2 router. I upgraded to the newest Extreme base router that apple released last month or so... Anyways my slingbox won't not connect. I tried so many options...
    After: I didn't have my linksys connected to the Extreme, I mean why should since I upgraded right, well anyways I just wanted to try it so this is what I did...
    I kept my extreme as the main source, but then I also connected my WRT54G2 to the extreme and then I connected my slingbox to the WRT54G2 and voila it works!
    Try connecting your older router to the extreme and then the slingbox to the older router. Plus say if you didn't have enough ports, well now you have more because your older router is connected to the Extreme with more ports... I hope I helped youl I was googling for this for HOURS and I found this post... I just figured it out so yeah try it.
    Message was edited by: Knahs

  • Can not connect to ftp through Proxy

    So I am at work on my Mac and I've recently been set up on our proxy server. I have been able to connect to the internet though my browsers and mail (though it is noticeably slower). My problem as of now is that I cannot connect to an ftp server at all. I put the proper ip settings in the network settings... or at least my IT person says I did. When he tried to connect to the same FTP site on his PC, it worked without a problem, so my Mac won't even get to the proxy. What am I doing wrong? Any suggestions are appreciated.
    Thanks,
    Steve

    In your Network System Preferences, under Advanced, Proxies tab, is Passive mode selected? If it is, try toggling it off then on (or try it with it off).
    Also, have you contacted the Cyberduck people to ask if they know about a problem?
    Have you tried connecting from Terminal?

  • Error while downloading through ftp using Java

    I have attempted to download a file using ftp through java this is my code
    import sun.net.www.protocol.ftp.FtpURLConnection;
    import sun.net.ftp.FtpClient;
    import sun.net.TelnetInputStream;
    import java.net.*;
    import java.io.*;
    import javax.swing.*;
    import java.awt.*;
    public class PasswordedPageViewer {
    public static void main (String[] args) {
    try {
    //Open the URLConnection for reading
    FtpClient cli = new FtpClient();
    cli.openServer("mycgiserver.com", 21);
    cli.login("//Username//", "//password//");
    TelnetInputStream ins = cli.get("mail.jsp");
    BufferedReader d = new BufferedReader(new InputStreamReader(ins));
    while(d.readLine().length()>0){
    System.out.println(d.readLine());
    catch (MalformedURLException e) {
    System.err.println(args[0] + " is not a parseable URL");
    catch (IOException e) {
    e.printStackTrace();
    System.err.println(e);
    } // end main
    } // end SourceViewer2
    But this keeps failing and returning the following error message
    sun.net.TelnetProtocolException: misplaced CR in input
         at sun.net.TelnetInputStream.read(TelnetInputStream.java:96)
         at sun.net.TelnetInputStream.read(TelnetInputStream.java:130)
         at sun.net.TelnetInputStream.read(TelnetInputStream.java:115)
         at java.io.InputStreamReader.fill(InputStreamReader.java:173)
         at java.io.InputStreamReader.read(InputStreamReader.java:249)
         at java.io.BufferedReader.fill(BufferedReader.java:139)
         at java.io.BufferedReader.readLine(BufferedReader.java:299)
         at java.io.BufferedReader.readLine(BufferedReader.java:362)
         at PasswordedPageViewer.main(PasswordedPageViewer.java:30)
    sun.net.TelnetProtocolException: misplaced CR in input
    Can anyone help

    Even so. Try simplifying. You only need one sun.* class:
    import java.io.*;
    import sun.net.ftp.FtpClient;
    public class FtpGet {
    public static void main( String[] argv ) throws Exception {
    FtpClient c = new FtpClient();
    c.openServer( "ftp.yourplace.com" );
    c.login( "user", "password );
    InputStream in = c.get( "yourFile.txt" );
    BufferedReader r = new BufferedReader(new InputStreamReader(in));
    String line = r.readLine();
    while ( null != line ) {
    System.out.println( line );
    line = r.readLine();
    }

Maybe you are looking for

  • Launch agent not running correctly in Yosemite

    I have a launch Agent that up until upgrading to Yosemite worked fine. Now it will not correctly run the script that it attempts to run. It would be great to get these folder actions up and running again. This is what I found so far:- The script work

  • Not sure if this is the right place to post this..Kernel Panic?

    yes i was watching a video in quicktime and then i got a kernel panic and have gotten 3 since.... here is my error Tue Mar 11 19:18:22 2008 Machine-check capabilities (cpu 1) 0x0000000000000006: 6 error-reporting banks Machine-check status 0x00000000

  • How works transport request management tool? (Version / Reference)

    Hi, I would like to understand how is working the transport management tool. When you save an object in a transport request, what do we save exactly ?      Is it just a reference to the object to lock it      Or it is a specific instance/version of t

  • NAL launch reboots system

    I have rebuilt a PC software installation and after installation of ZENworks 4 I found that the PC reboots after Novell Client login. I can briefly see the Windows Desktop but the system reboot appears to happen just as the NAL Window launches. Here

  • Can i purchase a creative cloud in the US and use in Philippines?

    is Creative Cloud membership available outside of the US? I have a US bank account and credit card and would like to use the service in the Philippines. Is this allowed under your license agreement? Regards, David R