Link to home
Start Free TrialLog in
Avatar of IT Guy
IT GuyFlag for United States of America

asked on

I need the instructions on how to open up two ports on a SonicWALL Firewall-Need to open up ports 143 (IMAP) and 993 (Secure IMAP)

I need the instructions on how to open up two ports on a SonicWALL Firewall-Need to open up ports 143 (IMAP) and 993 (Secure IMAP).

I don't have the model number of the SonicWALL firewall available, but I believe that the process of opening ports on SonicWALL firewalls should be similar if not identical.
Avatar of dpk_wal
dpk_wal
Flag of India image

Follow instructions below for adding custom service:

Go to Firewall > Services;
1. Click Add.
2. Enter the name of the service.
3. Specify Port Range and protocol [143 UDP and 993 UDP].
4. Click OK.

Now create a rule under Firewall > Access Rule to allow traffic from say WAN->LAN or as applicable.

Please let know if you need more details.

Thank you.
Depends if it is SonicOS Standard or Enhanced.

If Enhanced then its Firewall, Services and then Add a Custom Object.  Create the UDP 143 and UDP 993 ports as above.

You can then go into Firewall, Services and then Add a Custom Service Group containing the two services.

Then Firewall, WAN > LAN (if thats the zones you are working on) and then click on add.

Alternatively, after creating the services select WIZARD and then Public Access Wizard - select the custom services, enter private IP and public IP and the SonicWALL will create all the Firewall and NAT policies and objects for you.
Avatar of IT Guy

ASKER

How can I find out which model SonicWALL the remote company is using?
I have connected into their network and have logged into the SonicWALL firewall.
However, I don't see the name or model number of the firewall anywhere.
Go into System and Status - it will show the version there.
Avatar of IT Guy

ASKER

VCBooth and dpk_wal,

This is a SonicWALL Pro 3060 Enhanced Firewall.

Please provide me with the instructions on openning ports 143 and 993.

I have tried to follow the instructions that you have provided above, but these instructions don't work.
What I wrote will work for PRO 3060 enhanced. Look at the wizard towards the bottom of the screen, or top right depending on what version you are running.
Avatar of IT Guy

ASKER

dpk_wal,

I'm actually able to complete all of the steps in your instructions execpt for the part "Now create a rule under Firewall > Access Rule to allow traffic from say WAN->LAN or as applicable."

I have attached a screenshot.

I'm not sure waht to slect for the Source, Destination, Users Allowed, and Schedule fields.

Can you please tell me what I need to select for these fields?

Please refer to the screenshot.
Add-Rule-WAN-LAN.jpg
Ok, do you know the IP of where you want the ports to point to on the LAN?

Let's assume it's 1.1.1.1 (I'm on an iPhone lol!)

go into Network, Address Objects and add an address object.

Call it server, on the LAN and a Host - IP as above.

Go into your rule above and then select:

WAN
LAN
IMAP
Any
Server <---- you just created
PS my original instructions were right. Create a custom service in Firewalls and Services and then a group containing the IMAP service and the other one.

In that rule select the custom service group name instead of IMAP and the rule will apply to both services in the group - not just IMAP or you creating multiple rules.

Also still checkout the wizard - you are allowing IMAP in but the firewall doesn't know where to point it to unless you setup a NAT rule.

Public Server Wizard will create all these rules for you.
Avatar of IT Guy

ASKER

VCBooth,

I assume that I would want the IP of where you want the ports to point to on the LAN to point to the internal IP address of my Exchange server, which in my case is 10.10.1.51, right?

Please advise
Avatar of IT Guy

ASKER

VCBooth,

This is a SonicWALL Pro 3060 Enhanced Firewall.
Hi - have you found the Public Server wizard at all?  Its under Wizards on the PRO3060 Enhanced its usually either in the top right corner, or at the bottom of the menu on the left hand side.  Fill this in and it will complete all the Firewall and NAT rules you require.

The firewall rule alone is not enough.  Once the packets are in, the SonicWALL needs to know how to translate them.

The wizard will do all this for you - you just enter the services (i.e. IMAP), private IP and then the public IP - click Finish and its done.
ASKER CERTIFIED SOLUTION
Avatar of dpk_wal
dpk_wal
Flag of India image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial