Firewall Wizards mailing list archives

Re: Firewall Rules for NT Server and PDC


From: "Volker Tanger" <volker.tanger () detewe de>
Date: Thu, 12 Jul 2001 09:54:53 +0200

Greetings!

"Scott, Richard" schrieb:

"Volker Tanger" <volker.tanger () detewe de> wrote:
The connection NT-webserver and PDC necessarily is symmetrical.
You will probably need to open both tcp & udp 135, 137-139 and
1024+ in both directions with no questions asked.

What you need is to allow udp137, udp138 and tcp139 (often called the NBT
ports). Open them exclusively between the web-server and the PDC. There's no
need for the high ports. (Tested with NT4SP6a on both servers.)

You're right for file sharing (NBT).  Try  MS-RPCs (e.g. for COM or remote
NT-Server management) and you need tcp/udp/135 and the high ports. Depend on
what you want from the NT server - and in what direction.

Bye
    Volker


--

Volker Tanger  <volker.tanger () detewe de>
 Wrangelstr. 100, 10997 Berlin, Germany
    DiSCON GmbH - Internet Solutions
         http://www.discon.de/


_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards


Current thread: