Solved

Allowing Exchange 5.5 "New Mail Notifications" through firewall

Posted on 2002-07-19
6
194 Views
Last Modified: 2010-04-17
I've got a company behind a Netscreen 5 firewall but the users access an Exchange 5.5 server (NT for now) outside of the firewall.  

Everthing works fine except that the new mail notifications from the server are being blocked by the firewall. Checking into it I found out that Exchange uses random udp ports to send these notifications.  I've tried a policy on the firewall to allow all services from the Exchange server itself to get through.  I also created a custom server and set it to let in all udp ports from the Exchange server i.p. address but it still doesn't work.

Any ideas?
0
Comment
Question by:koden
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 2
6 Comments
 
LVL 17

Accepted Solution

by:
mikecr earned 300 total points
ID: 7167048
I think this might be what your looking for.

http://support.microsoft.com/default.aspx?scid=kb;en-us;Q264035
0
 
LVL 8

Expert Comment

by:scraig84
ID: 7169249
You should be able to allow anything from the IP address of the Exchange server through.  However, this is typically considered poor security policy because it opens the door to spoofing.  Any chance you bring the Exchange server behind the firewall and allow external access through the firewall?
0
 

Author Comment

by:koden
ID: 7170027
I just set up an icoming policy to allow incoming traffic  from the exchange server (all udp ports over 9999) on the firewall and Im waiting to see what happens...  
Unfortunately at this time I can't get the exchange server behind the firewall.  I take care of a subsidary company of a larger company that doesn't have a firewall yet - I set up this firewall so I could set up a Citrix server for home users.   Now (lots of fun) i just found out from netscreen that I can't assign an incoming policy to my pc behind the firewall (one to many nat by the netscreen).  The only way I can get this to work that I see is to set up one to one mapping with real ip's for each pc behind the firewall - Netscreen disappointed me on this one.
I'll get back soon.  
0
DevOps Toolchain Recommendations

Read this Gartner Research Note and discover how your IT organization can automate and optimize DevOps processes using a toolchain architecture.

 

Author Comment

by:koden
ID: 7189419
Sorry about the delay - had to go out of town for a week.
I'm finally going into the office to test things this Friday - get back then.
0
 

Author Comment

by:koden
ID: 7200072
That did the trick - thanks.
0
 
LVL 17

Expert Comment

by:mikecr
ID: 7200633
No problem. If there is anything else we can do for you, please stop back.
0

Featured Post

Create the perfect environment for any meeting

You might have a modern environment with all sorts of high-tech equipment, but what makes it worthwhile is how you seamlessly bring together the presentation with audio, video and lighting. The ATEN Control System provides integrated control and system automation.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
IPv6 question 1 74
route-map permit with a number 1 66
Where is running-config located at in ASR9K? 3 39
Routing Issue 26 66
The Cisco RV042 router is a popular small network interfacing device that is often used as an internet gateway. Network administrators need to get at the management interface to make settings, change passwords, etc. This access is generally done usi…
How to set-up an On Demand, IPSec, Site to SIte, VPN from a Draytek Vigor Router to a Cyberoam UTM Appliance. A concise guide to the settings required on both devices
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question