Re: UDP - ports to allow?

From: Oliver (oliver@greyhat.de)
Date: 03/18/03

  • Next message: Sharon_message: "ArcServe IT 6.61, Build 834: error E4107"
    From: oliver@greyhat.de (Oliver)
    Date: 18 Mar 2003 01:29:54 -0800
    
    

    Hi...

    browsing through another security-forum i found that IE seems to
    connect to localhost to port 1788 for caching functionality.

    Here is the link:
    http://groups.google.com/groups?dq=&hl=de&lr=&ie=UTF-8&oe=UTF-8&threadm=n07d7vs3kedd5kk6qhesv89h9srkdkq83q%404ax.com&prev=/groups%3Fhl%3Dde%26lr%3D%26ie%3DUTF-8%26oe%3DUTF-8%26group%3Dcomp.security.firewalls

    PS: The old and wellknown trick to solve problems like your's, is to
    install a firewall which has logging capabilities. Then you only have
    to look into the FW-Logfile to see which packets (Ports) are blocked.

    bye,

    Oliver
    www.greyhat.de

    "rebocardo" <bii@dscga.com> wrote in message news:<ozednYDRQ9ibRc6jXTWc3A@dscga.com>...
    > UDP - ports to allow?
    >
    > I am running a non-MS Web server under WinNT4.0 Server
    > with DNS server.
    >
    > Under the Network/Advance/Enable security tab
    > I am having problems allowing only port 53
    > under UDP. The browser IE6.X stops working with a
    > page/server not found error.
    >
    > What I have set up:
    >
    > only the TCP protocol installed
    >
    > TCP Allow:
    > 20,21,23,25,53,80,110,443,990
    > IP Allow:
    > 6,17
    > UDP Allow:
    > 53
    >
    > To get the browser to work, I have to allow all UDP ports. Is there a UDP
    > port besides port 53 I have to allow to get the IE 6.x to work? Using
    > netstat -a -n I can not see anything IE is trying to open.
    >
    > Is there something I am missing? I tried the MS knowledge base and various
    > firewall sites. I see no answer to this particular problem.
    >
    > Thanks in advance for any help.


  • Next message: Sharon_message: "ArcServe IT 6.61, Build 834: error E4107"

    Relevant Pages

    • Re: Whos blocking these ports? Please help...
      ... I can only help with where your not able to get with a browser. ... from the Pro boxs run pathping in the cmd window! ... run dcdiag /v on the server ... > Each of these ports uses a NIC in the server. ...
      (microsoft.public.win2000.security)
    • Sip Softphone hinter ISA wie die Ports freigeben
      ... Ich möchte Softphone X-Lite auf den Clients hinter dem ISA Server betreiben, ... habe alle Ports etc frei gegeben -ohne Erfolg, ... UDP 8000, plus eins für jede weitere OnLine Verindung zb. 8001, 8002 etz ... UDP oder TCP 3478, 3479 ...
      (microsoft.public.de.german.isaserver)
    • Re: TCP/IP Filtering Problem
      ... Unlike tcp/ip filtering for TCP, filtering for UDP is not "stateful" in that the ... dns name resolution FROM your server. ... I have it set so that the following TCP ports are ...
      (microsoft.public.win2000.security)
    • Re: RIS auf dem ISA2004
      ... When ISA Server 2004 is installed, ... Open the complete range of UDP ports from the client to the TFTP ...
      (microsoft.public.de.german.isaserver)
    • Re: What is the different between opening one port and a thouand ports on a firewall?
      ... check out BISP (Black Ice Server Protection). ... tune the firewall to let all the ports you need through (or turn it off ... > only creates a UDP socket on demand, and closes it when it's done. ...
      (comp.os.linux.security)