I have set up ISA to allow FTP out to all users. But ISA is NOT letting FTP out from MOST of my boxes, regardless of the user account. Some boxes do get out...All can get out if I "Enable" the default "allow-all" filter. Of course, I can't do that.
I am using the "ftp Explorer" GUI product. I have spent some time on this, but Am now crying uncle..Can Anyone help me with some suggestions?
I have a Protocol Access rule:
FTP download only, and
FTP server: ALLOW for ANY request
I also tried: Packet filter:
TCP port 21 and port 20 both directions for each. Tried Packet filter on and off with Protocol Rule.
Also tried Box with DHCP, and Static Ip with manual cfg of Gateway ...(SecureNAT?)
On a box that works, all users can get out, on box that does not work, no users can get out, including admin accounts....
I also tried removing the old Proxy client from a box..(I upgraded Proxy server to ISA.)
I have tried to get out from IE through http tunnel, I can get out if I first check the "use web based ftp option" in advanced options, but this is HTTP tunneling right, so it does not count ?
ANY HELP IS GREATLY APPRECIATED !