Re: [fw-wiz] Checkpoint and RTSP NAT



On Jan 30, 2008 12:35 PM, Pedro Henrique Morsch Mazzoni
<phmazzoni@xxxxxxxxx> wrote:
Client to server Transport field of RTSP packet: Transport:
RTP/AVP;unicast;client_port=6970-6971;mode=play,RTP/AVP/TCP;unicast;mode=play
Server response to client: Transport:
RTP/AVP;unicast;source=72.14.209.177;client_port=59598-59599;server_port=10580-10581;ssrc=6DF21148

Did anyone knows if Checkpoint NGX can be awareness of RTSP when using NAT,
and change the payload of the response packet ?

Check Point has no problem with RTSP since the pre-NG days. Your
problem is that the firewall isn't looking for RTSP on those ports
(10580-10581). By default, tcp/554 is the port for RTSP servers.

PaulM
_______________________________________________
firewall-wizards mailing list
firewall-wizards@xxxxxxxxxxxxxxxxxxxxx
https://listserv.icsalabs.com/mailman/listinfo/firewall-wizards



Relevant Pages

  • Re: Media services - cannot connect to media from internet
    ... If I disable HTTP and RTSP on the server, and only have MMS enabled, then I ... open for both UDP and TCP, no ports are being blocked outbound. ...
    (microsoft.public.windowsmedia)
  • Re: wie Ports filtern ?
    ... 554 and UDP ports 6970-6999". ... "Beim Firefox reicht es, das Plug-in zu deaktivieren, indem ... "Blocking the RTSP protocol with proxy or firewall rules may help ...
    (de.comp.security.firewall)
  • Re: Media services - cannot connect to media from internet
    ... Turn off WMS, and it goes away, ... >>If I disable HTTP and RTSP on the server, and only have MMS enabled, then I ... >>This is even on the local server. ... >>open for both UDP and TCP, no ports are being blocked outbound. ...
    (microsoft.public.windowsmedia)
  • Re: trouble with RealPlayer files on iPaq 1940
    ... >what ports are being used... ... The ports you mention are only for the rtsp negotiation, ... This (stateful router / firewall) implements the port negotiation ... the only one supported by my VOIP provider. ...
    (microsoft.public.pocketpc)
  • Re: trouble with RealPlayer files on iPaq 1940
    ... what ports are being used... ... The ports you mention are only for the rtsp negotiation, ... Using a packet sniffer on my PC, I could see that the port ranges were ... I can't get a new router... ...
    (microsoft.public.pocketpc)