RE: NetScreen XP and NetMeeting

From: Sarbjit Singh Gill (ssgill@gilltechnologies.com)
Date: 12/15/02

  • Next message: Robert Sieber: "AW: NetScreen XP and NetMeeting"
    From: "Sarbjit Singh Gill" <ssgill@gilltechnologies.com>
    To: "Gunn, Jeff" <Jeff.Gunn@FMR.COM>, <security-basics@lists.securityfocus.com>
    Date: Mon, 16 Dec 2002 01:29:54 +0800
    
    

    Hi,

    I actually want to allow internal folks to initiate a netmeeting session
    with somebody on the net. and vise versa. The session starts but one using
    MSN initially to be in a chat session and then initiating netmeeting.

    It somehow did not work both ways at all.

    Cheers
    Gill

    -----Original Message-----
    From: Gunn, Jeff [mailto:Jeff.Gunn@FMR.COM]
    Sent: Friday, December 13, 2002 2:41 AM
    To: 'security-basics@lists.securityfocus.com'
    Subject: RE: NetScreen XP and NetMeeting

    Let me preface this by saying I know nothing about Netmeeting, but I've had
    to set up similar services through firewall devices. ;)

    Are you a client connecting to the internet through a firewall and trying to
    establish a netmeeting connection, or are you setting up a Netmeeting server
    for other people to get to? The article seems to be aimed at an end-user
    who is trying to configure a personal firewall to allow Netmeeting
    connections out.

    The big scary-looking range of ports (1024-65535) are outbound UDP ports,
    which is a very common requirement. A lot of firewalls allow this by
    default because it can be (sometimes incorrectly) assumed that a connection
    originating from behind the firewall going out to the internet should be
    allowed.

    If you are trying to set up a server for other people to connect into,
    though, your requirements will probably be different. I could be reading it
    wrong, but it doesn't seem like the article from MS really adresses that.

            -Jeff

    > -----Original Message-----
    > From: Sarbjit Singh Gill [mailto:ssgill@gilltechnologies.com]
    > Sent: Wednesday, December 11, 2002 2:37 PM
    > To: security-basics@lists.securityfocus.com
    > Subject: NetScreen XP and NetMeeting
    >
    >
    > Greetings,
    >
    > As the subject goes, i need to get net meeting to work via
    > NetScreen. I
    > found a KB
    > article(http://support.microsoft.com/default.aspx?scid=kb;en-u
    > s;158623) but
    > it seems to show, i had to open a whole range of ports. I am
    > skeptical about
    > that!
    >
    > e.g..
    > Pass through primary TCP connections on ports 522, 389, 1503,
    > 1720 and 1731.
    > Pass through secondary UDP connections on dynamically assigned ports
    > (1024-65535).
    >
    > the above shows a whole range of ports that i have to open.
    > Is there a work
    > around.
    >
    > Kind Regards
    > Gill
    >



    Relevant Pages

    • Re: How to Establish NetMeeting Connections Through a Firewall
      ... > firewall or not, and what ports you should pass through ... It does provide information on port usage in NetMeeting but from I can tell ... You said you strongly recommend a software firewall, ... > communication on all the ports described in the article. ...
      (microsoft.public.internet.netmeeting)
    • Re: NetMeeting and NAT firewall
      ... > Is it possible to support NetMeeting via a NAT firewall, ... firewall because you have to open LOTS of ports. ... 389 Internet Locator Server (TCP) ...
      (comp.security.firewalls)
    • Re: Port forwarding/open ports?
      ... > To be able for another person to connect to my Netmeeting in ... > Windows XP and share applications I would need to open the ports 1720 ... > and 1503 in my router firewall. ...
      (alt.computer.security)
    • RE: Netmeeting Port question from a Sec newbie
      ... When you use NetMeeting to call other users over the Internet, ... shows the ports, their functions, and the resulting connection. ... 389 Internet Locator Service TCP ...
      (Security-Basics)
    • Re: XP-98 probs (cross-posted)
      ... She is using cable broadband not dialup. ... I don't believe she has a firewall; ... We did use NetMeeting to determine the IP ... >> estbalished an immediate connection while this person was there. ...
      (microsoft.public.internet.netmeeting)

  • Quantcast