HTTPS is NATed to the server to allow all incomming traffic over 80 and 443. The exchange server is set to use basic authentication over SSL. I have watched the port traffic on the firewall and as far as I can see 135 gets blocked first then the IP is added to blocked sites. An internally configured client moved outside the firewall to the exact same IP communicates fine with RPC/HTTPS so it is an initial configuration issue. I will post the log entries in the morning when I get back on the internal network as there is no way for me to unblock the IP from this side once I attempt a RPC/HTTPS connection.
Main Topics
Browse All Topics





by: dpk_walPosted on 2007-06-04 at 19:33:10ID: 19213936
Is the HTTPS service configured to allow specific public IPs or authenticated users; or what is the configuration on the incoming og the HTTPS service.
Can you paste the denied log entry so we know what on the firewall is blocking the packets.
Can you also check if the "new" client IP is listed under blocked hosts; if so, you might want to disable "Auto block source of packets not handled" under Setup > Intrusion Prevention > Default Packet Handling.
Please provide details.