11-24
Cisco ASA Series Firewall ASDM Configuration Guide
Chapter11 Configuring Inspection of Basic Internet Protocols
FTP Inspection
Add/Edit FTP Map
The Add/Edit FTP Map dialog box is accessible as follows:
Configuration> Global Objects > Inspect Maps > FTP > FTP Inspect M ap > Advanced View >
Add/Edit FTP Inspect
The Add/Edit FTP Inspect dialog box lets you define the match criterion and value for the FTP inspect
map.
Fields
Single Match—Specifies that the FTP inspect has only one match statement.
Match Type—Specifies whether traffic should match or not match the values.
For example, if No Match is selected on the string “example.com,” then any traffic that contains
“example.com” is excluded from the class map.
Criterion—Specifies which criterion of FTP traffic to match.
Request Command—Match an FTP request command.
File Name—Match a filename for FTP transfer.
File Type—Match a file type for FTP transfer.
Server—Match an FTP server.
User Name—Match an FTP user.
Request Command Criterion Values—Specifies the value details for FTP request command match.
Request Command:
APPE—Command that appends to a file.
CDUP—Command that changes to the parent directory of the current working directory.
DELE—Command that deletes a file.
GET—Command that gets a file.
HELP—Command that provides help information.
MKD—Command that creates a directory.
PUT—Command that sends a file.
RMD—Command that deletes a directory.
RNFR—Command that specifies rename-from filename.
RNTO—Command that specifies rename-to filename.
SITE—Commands that are specific to the server system. Usually used for remote
administration.
STOU—Command that stores a file using a unique filename.
File Name Criterion Values—Specifies the value details for FTP filename match.
Regular Expression—Lists the defined regular expressions to match.
Manage—Opens the Manage Regular Expressions dialog box, which lets you configure regular
expressions.
Regular Expression Class—Lists the defined regular expression classes to match.