Sunday, June 6, 2021

Firepower FTP silently dropping ssh traffic

I have a Firepower FTP which I have setup Anyconnect VPN. The VPN passes traffic internally to the network and everything works as expected (for the most part) What I have noticed is that its not passing SSH traffic. I can browse an https page behind the firewall but if I try and SSH then it drops the traffic.

I know that there is a policy allowed for it because there is an any/any but on top of that if I do a packet-tracer it shows it will allow it.

I then setup a capture on the outside and inside interface. If I browse https I can see the traffic passing the firewall. If I try SSH I don't even see the SSH traffic hit the outside interface. It's silently dropping the traffic. Has anybody seen this or know why it's doing this?

Cheers



No comments:

Post a Comment