Go Premium for a chance to win a PS4. Enter to Win

x
?
Solved

Exchange RPC through PIX Firewall

Posted on 2002-05-13
11
Medium Priority
?
574 Views
Last Modified: 2012-08-14
Does anybody no what ports need to be opened on the PIX 525 Firewall to Support MSExchange RPC communication?
0
Comment
Question by:csdurham
  • 4
  • 3
  • 2
  • +2
11 Comments
 
LVL 11

Expert Comment

by:geoffryn
ID: 7007328
Many.  This is a security nightmare.  Unless you have no other options, I would avoid this like the plague.  Look into VPN through or terminated on the PIX>
0
 
LVL 4

Expert Comment

by:Ronin
ID: 7008194
The following is my personal collection:
There is some articles that can help you to be abble to connect to the Exchange Server through the FireWall.
Exchange Client FAQs:
http://support.microsoft.com/support/Exchange/Content/faqs/xclnfaq.asp?LN=EN-US&SD=gn&FR=0 
Q176466 - XGEN: TCP Ports and Microsoft Exchange: http://support.microsoft.com/support/kb/articles/Q176/4/66.ASP?LN=EN-US&SD=gn&FR=0
Q148732 - XADM: Setting TCP/IP Port Numbers for Internet Firewalls:
http://support.microsoft.com/support/kb/articles/Q148/7/32.asp?LN=EN-US&SD=gn&FR=0
Q175698 - XCLN: Exchange Client Top Support Issues and KB Articles:
http://support.microsoft.com/support/kb/articles/Q175/6/98.ASP?LN=EN-US&SD=gn&FR=0
Q155831 - XADM: Setting TCP/IP Ports for Exchange and Outlook Client Connections Through a Firewall:
http://support.microsoft.com/support/kb/articles/q155/8/31.asp?LN=EN-US&SD=gn&FR=0
Q180795 - XADM: Intrasite Directory Replication Fails Error 1720:
http://support.microsoft.com/support/kb/articles/Q180/7/95.ASP?LN=EN-US&SD=gn&FR=0 
Q258495 - XCLN: Troubleshooting Client Connectivity Issues Using Command Line Utilities:
http://support.microsoft.com/support/kb/articles/Q258/4/95.ASP?LN=EN-US&SD=gn&FR=0
Q245273 - XWEB: OWA Setup Error Message: There Are No More Endpoints Available from the Endpoint Mapper:
http://support.microsoft.com/support/kb/articles/Q245/2/73.ASP?LN=EN-US&SD=gn&FR=0
Q244523 - XCLN: Unable to Open Your Default E-Mail Folders:
http://support.microsoft.com/support/kb/articles/Q244/5/23.ASP?LN=EN-US&SD=gn&FR=0 
Q240859 - XADM: Exchange Administrator Program Stops Responding When Connecting to an Exchange Server Computer over the Internet:
http://support.microsoft.com/support/kb/articles/Q240/8/59.ASP?LN=EN-US&SD=gn&FR=0
Q259240 - XWEB: How to Configure OWA to Connect to Exchange Through a Firewall:
http://support.microsoft.com/support/kb/articles/Q259/2/40.ASP?LN=EN-US&SD=gn&FR=0
0
 
LVL 3

Expert Comment

by:jpmarten
ID: 7010853
RPC?  Or SMTP?

You need to disable the mail fixup(MailGuard) on that Pix firewall in order to let SMTP mail come into your environment.
0
What does it mean to be "Always On"?

Is your cloud always on? With an Always On cloud you won't have to worry about downtime for maintenance or software application code updates, ensuring that your bottom line isn't affected.

 

Author Comment

by:csdurham
ID: 7011358
RPC and we want to allow the Global Address List to propagate between servers.
0
 
LVL 11

Expert Comment

by:geoffryn
ID: 7011418
Is the other server in the DMZ?
0
 

Author Comment

by:csdurham
ID: 7011433
Yes it is
0
 
LVL 11

Expert Comment

by:geoffryn
ID: 7011440
Which version of Exchange?
0
 

Author Comment

by:csdurham
ID: 7011453
Exhange 5.5
0
 
LVL 11

Expert Comment

by:geoffryn
ID: 7011505
Then the links posted above contain all of the necessary port numbers.  This is still considered to be a very insecure model.
0
 
LVL 2

Expert Comment

by:ritupatel112699
ID: 7017364
RPC uses TCP 135  
Open this port will help you to start exchange server communication.

rip
0
 
LVL 3

Accepted Solution

by:
jpmarten earned 150 total points
ID: 7017487
If you statically assign ports to the Directory Service and IS, then open those ports on the firewall, you should be good to go.  As ritupatel mentioned, you will need to open port 135 RPC end point mapper.
0

Featured Post

Free Tool: Site Down Detector

Helpful to verify reports of your own downtime, or to double check a downed website you are trying to access.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

With so many activities to perform, Exchange administrators are always busy in organizations. If everything, including Exchange Servers, Outlook clients, and Office 365 accounts work without any issues, they can sit and relax. But unfortunately, it…
There can be many situations demanding the conversion of Outlook OST files to PST format and as such, there is no shortage of automated tools to perform this conversion. However, what makes Stellar OST to PST converter stand above the rest? Let us e…
To add imagery to an HTML email signature, you have two options available to you. You can either add a logo/image by embedding it directly into the signature or hosting it externally and linking to it. The vast majority of email clients display l…
Exchange organizations may use the Journaling Agent of the Transport Service to archive messages going through Exchange. However, if the Transport Service is integrated with some email content management application (such as an anti-spam), the admin…

885 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question