Forum Discussion
Hi michaelsaw,
I know the actual ports of the traffic.
I want to know "Is the traffic really match to FTP service signature?"
If it's not sure, I can't use service object to firewall rules.
Thank you,
Hi Kodama,
Appreciate your feedback.
There is a KB to explain the application classification/identification: https://support.catonetworks.com/hc/en-us/articles/360011618758-Explaining-How-Cato-Classifies-Network-Applications
Would this be alright?
Cheers
- Kodama2 months ago
Making Connections
I appreciate your response, but...... please read the thread before replying.
Thank you,
- michaelsaw2 months ago
Cato Professional Services
Hi Kodama,
Noted on the question: "Is the traffic really match to FTP service signature?"
Yes, the traffic matches.
Here is the supporting information:Recap of the reference KB: https://support.catonetworks.com/hc/en-us/articles/360011618758-Explaining-How-Cato-Classifies-Network-Applications
Can we check if this would answer the question?
Is it suspected that the FTP traffic is not matching the correct signature?
If yes, a packet capture can be performed and the packet details can be reviewed on Wireshark, depending on requirements.
Can we check if this would help?
Do reach out to your assigned Cato Representative or submit a Support ticket, if further assistance is required.
Cheers