FortiADC
FortiADC enhances the scalability, performance, and security of your applications whether they are hosted on premises or in the cloud.
kmak
Staff
Staff
Article Id 259107
Description This article describes the steps to create L7 FTP over TLS Virtual Server.
Scope FortiADC.
Solution

Prerequisite:

- FortiADC version 7.0.0 above.

- FortiADC Virtual Server’s Custom Application Profile type FTP.

 

1) Navigate to Application Resources under the Server Load Balance Tab. Create a new profile for the L7 FTP type, or clone from an existing L7 FTP Profile type.

 

kmak_0-1686024302460.jpeg

 

2) In the created FTP Application Profile, select 'Explicit' as the Security Mode.

 

kmak_1-1686024302466.jpeg


3) Create/Clone a new Client SSL profile to use an imported SSL certificate. Use a default Client SSL profile if using the default certificate from FortiADC.

 

kmak_2-1686024302470.jpeg

 

4) Create a new L7 FTP Virtual Server or edit the existing L7 HTTP Virtual Server. Under the General Tab, select the FTP Resources Application Profile, Client SSL Profile, Persistence policy, and the Real Server Pool.

 

kmak_3-1686024302476.jpeg

 

5) Test the FTP over TLS settings by connecting to the FTP Virtual Server. In this article, a test was performed using FileZilla FTP Client. Configure the FTP profile in FileZilla FTP Client.

 

kmak_4-1686024302479.jpeg

 

6) TLS connection established will be shown if the FTP over TLS login successfully.

 

kmak_5-1686024302481.jpeg

 

Related documents:

https://docs.fortinet.com/document/fortiadc/7.2.0/handbook/559628/configuring-application-profiles

https://docs.fortinet.com/document/fortiadc/7.0.0/handbook/190300
Contributors