Newbie: Port forwarding and triggering on Linksys BEFSW11

From: Wally Sanford (PleaseSubstituteMyActualFirstNameHere_at_wallysanford.com)
Date: 09/27/03


Date: Sat, 27 Sep 2003 13:00:15 GMT

This computer runs IIS, and a DNS server. The Linksys BEFSW11 also serves a
Cisco ATA enabling Vonage VoIP telephone service.

For IIS I forward (to the server IP) port TCP/UDP 80-80, for DNS I forward
port TCP/UDP 53-53. I have port TCP 953 forwarded for rndc, but it's not
clear to me that I must. Vonage requires UDP 69, 123, 5060-5061, and
10000-20000. Seems like a lot of ports open for Vonage, but they all need go
only to the ATA IP, not the server.

I was considering port triggering instead of forwarding, thinking this might
increase security, or at least make available slots in the Linksys's Port
Forwarding table, which is maxed out. However, using port triggering for
port 80 disables serving pages (I assume because no one can see the port:
it's closed and no request originated LAN-side). Using triggering for the
Vonage ports works (I think), but doing so would route WAN requests to all
IP's on the LAN side, which seems less secure than just forwarding only to
the ATA....

Can anyone suggest whether triggering offers advantages over forwarding in
this case?

Thanks.

-- 
Wally Sanford
web: http://wallysanford.com
email: PleaseSubstituteMyFirstNameHere@wallysanford.com


Relevant Pages

  • Re: simple Network Bridge?
    ... > 1) port forwarding is telling your server which service is being delivered ... Bridging is to connect two Ethernet Segments of the same LAN. ...
    (comp.os.linux.networking)
  • Re: Weird connection issues...
    ... It could be ISP blocking port 80 traffic. ... > I've just finished setting up a full Windows Server 2003 environment. ... > connection into a Linksys router. ... Also, I'm not using any UPnP forwarding in my router, but i ...
    (microsoft.public.inetserver.iis)
  • RE: publications concerning port forwarding
    ... explained that port forwarding is very risky but they don't seem to ... no security implications about forwarding ports. ... internal MS Exchange server responding to public internet traffic, ... a postfix server in the DMZ and a MS Exchange ...
    (Pen-Test)
  • Re: RDC to PC on domain
    ... with appropriate port forwarding, ie. both TCP Port 80 and TCP Port ... If this is a generic web server then the web based method ... Al Jarvi (MS-MVP Windows Networking) ...
    (microsoft.public.windowsxp.work_remotely)
  • Openssh Port Forwarding Confusion
    ... that I have forwarded my X11 and my server client relation ship works. ... Now for my Port forwarding question. ...
    (comp.security.ssh)