Solved

ISA 2000 dynamic ports

Posted on 2004-08-31
3
630 Views
Last Modified: 2013-11-16
Hi,

is there a way to configure an ISA server to allow any communications for an application? (like in symantec personal firewall)
My problem is that we have to use video conference via MSN Messenger, and I've read a lot of hints and tips on what ports should be opened. I opened them but it still doesn't work.

thanks in advance.
0
Comment
Question by:thegroover
3 Comments
 
LVL 7

Assisted Solution

by:JJ2
JJ2 earned 50 total points
ID: 11964368
0
 
LVL 35

Accepted Solution

by:
Bembi earned 50 total points
ID: 11980047
This is a general problem on ISA 2000, see what microsoft says:

http://www.microsoft.com/technet/prodtechnol/isa/2000/maintain/isaimsec.mspx
SIPS. Features such as voice, video, application sharing, and whiteboard require a connection to be made between an internal and external client, and use SIP Signaling (SIPS) to set up the communication session, which then uses dynamic ports. For example, using audio/video (AV) requires opening all UDP ports between 5004 and 65535 to allow SIP and media streams (RTP) to cross the firewall. The use of dynamic ports without an associated application filter is a problem because ISA Server does not have information about which ports to open and at what time. No ISA Server SIP application filter is available to circumvent this issue.

or
http://msdn.microsoft.com/library/default.asp?url=/library/en-us/rtcclnt/rtc/traversal_of_upnp_enabled_nats.asp

The usual solution is to open a wide range of ports above 5000 to allow video streaming. And this is a security risk. Try Net-Meeting for this.
0
 
LVL 1

Author Comment

by:thegroover
ID: 11987575
well, thanks anyway guys, the articles are usable.

G
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Do you have a windows based Checkpoint SmartCenter for centralized Checkpoint management?  Have you ever backed up the firewall policy residing on the SmartCenter?  If you have then you know the hassles of connecting to the server, doing an upgrade_…
To setup a SonicWALL for policy based routing to be used with the Websense Content Gateway there are several steps that need to be completed. Below is a rough guide for accomplishing this. One thing of note is this guide is intended to assist in the…
This video shows how to use Hyena, from SystemTools Software, to bulk import 100 user accounts from an external text file. View in 1080p for best video quality.
Finds all prime numbers in a range requested and places them in a public primes() array. I've demostrated a template size of 30 (2 * 3 * 5) but larger templates can be built such 210  (2 * 3 * 5 * 7) or 2310  (2 * 3 * 5 * 7 * 11). The larger templa…

773 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question