03-03-2009 02:58 AM
I have been looking on documentation for clarification but cannot find any info. So my question is:-
service timeout for tcp is set to 30 minutes of inactivity,
Because the control port is only used at the beginning and end of the FTP connection does the netscreen tie the two control and data ports together to know not to close the control port down after 30 minutes if the data port is still transffering data?
Solved! Go to Solution.
03-03-2009 03:52 AM
03-03-2009 04:10 AM
03-03-2009 04:49 AM - edited 03-03-2009 04:50 AM
You can see enabled / disabled by get alg (suprise huh
) but there's nothing to set for this ALG.
03-03-2009 05:06 AM
Thanks i tried the get alg under the vsys no output. When i do the get alg on the global it shows the following:-
get alg
MSRPC ALG : enabled
SUNRPC ALG : enabled
SQL ALG : enabled
SIP ALG : enabled
RTSP ALG : enabled
H323 ALG : enabled
MGCP ALG : enabled
SCCP ALG : enabled
So not sure how the above is used for FTP?
03-03-2009 05:31 AM
what about a set alg ?
my SSG5 (ScreenOS 6.1) shows:
instructor-> set ALG ?
appleichat Apple iChat ALG
dns DNS ALG configuration
ftp FTP ALG configuration
h323 H.323 ALG information
http HTTP ALG configuration
mgcp MGCP ALG
msrpc attach ms-rpc alg
pptp PPTP ALG configuration
real REAL ALG configuration
rsh RSH ALG configuration
rtsp attach rtsp rpc alg
sccp SCCP ALG information
sctp SCTP ALG information
sip SIP ALG
sql SQL ALG information
sunrpc attach sun-rpc alg
talk TALK ALG configuration
tftp TFTP ALG configuration
xing XING ALG configuration
instructor-> set ALG FTP ?
enable enable FTP ALG
instructor->
I'm not aware of any hardware restriction for ALG's.
03-03-2009 06:40 AM
When i do the set command it gives me the same options as the get
set ALG ?
h323 H.323 ALG information
mgcp MGCP ALG
msrpc attach ms-rpc alg
rtsp attach rtsp rpc alg
sccp SCCP ALG information
sip SIP ALG
sql SQL ALG information
sunrpc attach sun-rpc alg
03-03-2009 07:15 AM
03-03-2009 07:28 AM
03-03-2009 11:23 AM
Hi
We are working on getting a KB out soon. Please ref
KB13509 for that in about a week or so and it should be out.