Re: basic firewall with TCP IP filtering



The Tcp/Ip filtering you are using is very old. It probably has
not been changed since NT 3.51.
The issue you have is due to fact that you are attempting to go
to Tcp 80 (or 443) but from a port not in your list, so the return
is to a port not allowed.
Most people today would be using the Windows firewall, or
IPsec in a purely filtering mode (and to meet your IE usage,
then define that traffic FROM tcp 80 and 443 is allowed)
Actually, as a standard practice people do not browse from
their servers, so while most people use other means they are
likely not defining such that browsing can happen.

"user" <some@xxxxxxxxxxxxx> wrote in message
news:GcFLh.38385$zU1.35304@xxxxxxxxxxxx
Hello,
On my webserver I set "enable tcp ip filtering" to permit only TCP ports
21,21,25,53,80,110,443,1433,3389 and 8086
UDP ports permit only 53 and IP protocols set to permit all.
Problem now is I can access the webserver on this machine from a remote
location (as expected), however, I now cannot access the internet using
internet explorer from this machine (unexpected)
What do I need to change in order for IE to access the internet from this
server? (It has also affected the ability to download NAV updates)



.



Relevant Pages

  • Re: uucp via tcp through firewall fails
    ... >and now uucp via tcp fails. ... >UNIX system. ... as bad as having it directly exposed to the internet. ... recall that I had to enable ident and open a port for it 113/TCP. ...
    (comp.unix.sco.misc)
  • Re: Newbie DNS resolution question
    ... > up and running from the Internet. ... > third-party web hosting company, ... In your router, forward incoming requests on port 80 TCP 443 TCP for SSL, to ...
    (microsoft.public.windows.server.dns)
  • Re: FYI, what do we do now?
    ... internet, ... My concern is can Verizon filter my traffic to the extent that they will detect my alternative news servers and the alt.* groups I subscribe to and consequently be subject to their "Inquisition"? ... The standard port is 119. ... Some people who have extensive filtering at work, ...
    (alt.comp.periphs.mainboard.asus)
  • RE: Windows XP open port 389
    ... Internet Connection Sharing in WIN XP should use NAT (Network Address ... Windows XP open port 389 ... I believe the Internet Locator Service cannot be installed on Windows ... 389 Internet Locator Service TCP ...
    (Focus-Microsoft)
  • Re: honeypot
    ... That allows me to see new malware port hunting. ... 66.120.0.0-66.127.255.255 # SBC Internet Services SBCIS-SIS80 ... 66.144.0.0-66.145.255.255 # State of Ohio Network Columbus OH ...
    (comp.security.misc)