We help IT Professionals succeed at work.

Need to forward outbound FTP traffic to different gateway via Cisco Switch?

jpquonce
jpquonce asked
on
Medium Priority
657 Views
Last Modified: 2012-08-13
I need to forward outbound FTP traffic to different gateway via Cisco Switch?

Is this possible via a ip route or something?

Thanks in advance for the help...
Comment
Watch Question

What kind of switch do you have? Layer 2 or layer3?

Author

Commented:
It is a layer 3 and it is a Cisco 3550 switch
I tried to simulate you situation but a didn't succeed.
You can try to configure something like this:

access-list 101 permit tcp any any eq ftp
access-list 101 permit tcp any any eq ftp-data

route-map ftp
match ip address 101
set interface fa0/2 - outbound interface

interface fa0/1  - inbound interface
ip policy route-map ftp

I am not sure if your switch supports these features, but you can try :).
Sr. Systems Engineer
CERTIFIED EXPERT
Top Expert 2008
Commented:
I think you need the advance IP services IOS version of the 3550 switch to enable policy based routing, but ionut_mir is on the right track.

You can try just a little different:

access-list 101 permit tcp any any eq ftp
access-list 101 permit tcp any any eq ftp-data

route-map ftp
match ip address 101
set ip nex-hop <ip address of gateway>

interface vlan 1 <== client data vlan
  ip policy route-map ftp

Not the solution you were looking for? Getting a personalized solution is easy.

Ask the Experts

Author

Commented:
It took all that code EXCEPT:

ip policy route-map ftp

What should I do now?

Author

Commented:
bumped up points to 500

Author

Commented:
is there something else I need to do to activate this command?
ip policy route-map ftp
As Irmoore said you should try to update your switch IOS.
What IOS version do you have now?

Author

Commented:
Version 12.1(8)EA1c
Try to update your software. It seems that version 12.1 doesn't support Policy Based Routing.

Author

Commented:
Seems this is my issue for ip policy:

http://supportwiki.cisco.com/ViewWiki/index.php/User_is_unable_to_configure_PBR_on_a_Catalyst_3550_switch

BUt it is calling for the extended-match and that wasn't added until 12.1(11)EA1.

I have never used this command and I don't know if I will be upgrading the IOS or not at this time.
Access more of Experts Exchange with a free account
Thanks for using Experts Exchange.

Create a free account to continue.

Limited access with a free account allows you to:

  • View three pieces of content (articles, solutions, posts, and videos)
  • Ask the experts questions (counted toward content limit)
  • Customize your dashboard and profile

*This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

OR

Please enter a first name

Please enter a last name

8+ characters (letters, numbers, and a symbol)

By clicking, you agree to the Terms of Use and Privacy Policy.