Re: File sharing



capitan wrote:
capitan wrote:
>> "capitan" <c@xxxxxx> wrote in message
>> news:%23tE2c%235yGHA.1292@xxxxxxxxxxxxxxxxxxxxxxx
>>> I have a few XP sp2 machines which have the firewall enabled, and
>>> file and printer sharing is set to be allowed to pass through the
>>> firewall, but it doesn't work (can't run administrative share). Most
>>> machines here this configuration works fine. Any suggestions as to
>>> why this doesn't work on a select few machines? Thanks.
>>
>>
Steven L Umbach wrote:
Try running the command netsh firewall show state on a computer that has the problem and then one that does not have the problem to see how the results compare. If you get an access denied message to the administrative share that would indicate that you are not a local administrator on the computer or that simple file sharing is enabled. I would also use telnet to try and access TCP port 139 and 445 on a machine that works correctly and one that does not to help determine if it is a network access or other problem. You can use the command telnet xxx.xxx.xxx.xxx 39 using the actual IP address of the computer you want to access. If the port is open you will see a blank command window with a blinking cursor like you will see if you run telnet 127.0.0.1 445 on your computer. Portqry is also a tool from Microsoft that allows you to scan network computer for port availability from the command line.

Steve

http://support.microsoft.com/kb/310099/ --- Portqry

Thanks for the suggestions I will give them a try!

capitan


OK, I did all of the tests you suggested Steve, and it turns out that even though the firewalls of these 2 machines (one that works properly and one that doesn't) guis show the same settings, the Microsoft directory services shows as filtered on the machine where file sharing is failing to get through the firewall. I have done some research on how to correct that since doing through the gui is not working, and I have come up with using 'netsh firewall show portopening' and then to correct it, 'netsh firewall set portopening TCP 445' But I think there should be more on this command, I just can't find how to specify that I want that port listening for Microsoft directory services instead of filtering. Can anyone who knows command line for the XP SP2 firewall help me out please?

Thanks!

Just thought of more info I would like to add to this post. What I actually need to do is to enable port opening TCP 445 through the scope of a few different subnets. So far I have:

'netsh firewall set portopening TCP 445 microsoft-ds service enable'

How can I query the working machine to get the scope information for subnets on port TCP 445? If I can get that, I then know how to configure the port on the other machine.

Alternately, as I mentioned, I think I could specify the scope of subnets to allow.

Any suggestions? Thanks!
.



Relevant Pages

  • Re: Norton 2005 Int Security, Trend PCcillin or Zone Alarm ???????
    ... > I want security I can run on both machines. ... System overhead is higher than standard firewall applications. ... Symantec products do not remove (uninstall) well. ... Micro Trends PC-Cillan is very good (possibly the best in home network ...
    (alt.computer.security)
  • RE: Need to block port 1521 for all machines except one.
    ... Need to block port 1521 for all machines except one. ... There were other iptable rules that were ... The following command worked. ... Is there any way out we can modify this command to work for two machines. ...
    (RedHat)
  • Re: File sharing
    ... If you get an access denied message to the administrative share that would indicate that you are not a local administrator on the computer or that simple file sharing is enabled. ... I would also use telnet to try and access TCP port 139 and 445 on a machine that works correctly and one that does not to help determine if it is a network access or other problem. ... If the port is open you will see a blank command window with a blinking cursor like you will see if you run telnet 127.0.0.1 445 on your computer. ... Most machines here this configuration works fine. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: install
    ... You just need to set up your network correctly. ... start by running the Network Setup Wizard on all machines (see ... Problems sharing files between computers on a network are generally caused ... by 1) a misconfigured firewall or overlooked firewall (including a stateful ...
    (microsoft.public.windows.vista.installation_setup)
  • Re: File sharing
    ... >>> firewall, but it doesn't work. ... >>> machines here this configuration works fine. ... If you get an access denied message to the administrative share that would indicate that you are not a local administrator on the computer or that simple file sharing is enabled. ... If the port is open you will see a blank command window with a blinking cursor like you will see if you run telnet 127.0.0.1 445 on your computer. ...
    (microsoft.public.windowsxp.security_admin)