i am running NG FP2 and i have setup user in the fw to authenicate via SecurID. When they use telnet it works fine, but when a user trys to ftp i get the following error message:421-Access denied - wrong user name or password
On the FW log it says Access denied by SecurID Server. In the SecurID Server log it says that i am puttin the worng passcode in, but i know i am puttin the right one in because it worked when i telnet. i open a ticket with nokia and they can't figure it out (not surprise).
1. Test ftping without an authentication rule just source network, dest network service. Test that works.
2. Create a test id with access to anything anytime and do a rule for that rather than securid.
3. Finally retest the securid rule where hopefully you've identified the problem. Maybe generic* settings. Is ftp destination different than telnet destination.