TCP/IP Filtering Problem

G

George Jewell

Hello,

I'm trying to lock down a Win2K server (Svc. Pak 4) for use as a web server
and want to be as thorough as possible. I'd like to use TCP/IP Filtering,
but have run into a snag. I have it set so that the following TCP ports are
permitted: 21, 25, 53, and 80; and also UDP port 53. The problem is that it
seems name resolution is not working. I can ping sites by IP address but not
DNS names. Also, sending mail with the SMTP server does not work, and adds
this entry to the system log: "message delivery to the remote domain
<domain> failed for the following reason: destination server does not
exist."

When I allow all UDP ports, everything works fine. Obviously there are a few
other UDP ports I must allow - does anyone have any suggestions as to which
ports to open? Thanks.
 
P

Phillip Windell

Sorry, I should have gave a little commentary with my other post. I think
you are taking the wrong approach. The articles I included in that other
post give you the right direction to move in. There is a whole *lot* more to
security than fooling around with the TCP/IP Protocol. TCP/IP only involve
Layers 3&4 of the OSI model,...and there is a whole lot more to networking
than that. You need to think in a "bigger picture".
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Similar Threads

TCP/IP Filtering 2
TCP/IP Filtering problems 1
TCP/IP Filtering 2
DHCP management, port number 2
Need help with IPSec 1
How to check the status of the UDP port status 0
TCP/IP filtering 1
About Ports 1

Top