After upgrading to version 4.1.0 on my PA2050 in HA (Active-passive) passive FTP is no longer possible to our FTP server. When users logon they timeout on the MLSD command (in binary mode) I'm looking at NAT because the issue does not arise when accessing the same server from within the network. The FTP server is in the DMZ and doesn't NAT for internal users, but it has a bi-directional NAT behind a static public IP for untrusted users. Active FTP works fine. I did remove the vulnerability profile to test: problem still exists .
... View more