@GIdenJoe wrote:
I'm not entirely sure about that last thing @KarstenI .
If the MX didn't do any inspecting of FTP then active FTP on clients would not work, but they do.
I haven't tested it for quite some while with "Active", but based on the note "Note: Outbound active FTP is supported in MX Firmware version 12.25+ and 13.6+" there really could be some limited FTP-inspection. But not really as powerful as on other firewalls, which is the reason we have to do the mentioned configuration for passive FTP which is not needed for example on the ASA.
If you found this post helpful, please give it Kudos. If my answer solves your problem, please click Accept as Solution so others can benefit from it.