Solved

How do I open ports in windows 2003 server

Posted on 2008-10-02
11
749 Views
Last Modified: 2013-12-02
Our network servers (all windows 2003) recently had something modified or applied to them that closed all ports execpt for Hp insight managment and Backup exec. There was port 9898 open for tripwire and others but now they are closed. On each windows 2003 server the firewall is disabled but says it's using Domain settings (group policy?). I suspect one of our windows admin's has made a change without properly doing an RFC etc. I've inspected our Default domain GPO and there is no mention of firewall settings being applied. Anybody have any hints where I should look?
0
Comment
Question by:drewman212
  • 3
  • 2
  • 2
  • +3
11 Comments
 
LVL 5

Expert Comment

by:ccns
ID: 22629127
if you goto Administrative tools > routing and remote access see if this is enabled? if it is disable this if you are not using this for firewall/router type things for your server. if you are you con configure from here.
0
 
LVL 9

Expert Comment

by:pablovr
ID: 22629215
Does it have installed any 3rd party firewall software installed (such as alarm zone, or part of an antivirus suite)?
0
 
LVL 9

Expert Comment

by:pablovr
ID: 22629224
Some antivirus solutions have preventive behaviors, in those cases they close ports considered in risk, later they open them again.
0
 
LVL 42

Expert Comment

by:kevinhsieh
ID: 22629455
Is the Windows Firewall/Internet Connection Sharing Service (ICS) running as listed under services?  If so, it's the Windows firewall.  It sounds like someone turned on the firewall via group policies.  You can use the  Group Policy Modeling function of Group Policy Management to see what settings are being forced upon your servers, and which policies are making the changes.
0
 
LVL 9

Expert Comment

by:mgonullu
ID: 22629489
Go to Start -> Run Gpedit.msc
Local Computer policies
Admin Templates
Network Connections
Windows Firewall

Make sure that it not configured there so it can take the default value
0
Control application downtime with dependency maps

Visualize the interdependencies between application components better with Applications Manager's automated application discovery and dependency mapping feature. Resolve performance issues faster by quickly isolating problematic components.

 
LVL 18

Accepted Solution

by:
Jeremy Weisinger earned 500 total points
ID: 22629761
Run "gpresult /v" (you probably want to redirect the output because this command generates a lot of text) and you can see if firewall settings are being pushed down through Group Policy and if so, what GPO has the settings.
0
 

Author Comment

by:drewman212
ID: 22632847
I checked AV, RRAS etc but no luck but I get this entry in the gpresult

Default Domain Policy
                KeyName:     Software\Policies\Microsoft\WindowsFirewall\DomainProfile\EnableFirewall
                Value:       0, 0, 0, 0
                State:       Enabled

So this means it's pushed thru this domain policy?
0
 

Author Comment

by:drewman212
ID: 22632942
I've checked the Group policy that is applied under

network connections\windows firewall\domain profile\ Windows firewall: Protect all network connections
it has been set to disabled.

Could it be a security template that has been applied to the servers (we are talking over 50 of them)

0
 
LVL 9

Expert Comment

by:mgonullu
ID: 22632974
yes it is
0
 
LVL 18

Assisted Solution

by:Jeremy Weisinger
Jeremy Weisinger earned 500 total points
ID: 22633064
Well if it says it's using the domain profile and it's disabled that should be fine.

Are you sure the services are running and listening on the ports you expect?
Run
netstat -a | find "LISTENING"

From that list you should see all the ports that the server is listening on. Is file and print sharing working? Is it really everything expect HP Insight and Backup Exec being blocked or is it just a few programs that aren't working?
0
 
LVL 9

Expert Comment

by:pablovr
ID: 22634888
Besides netstat, you can use some of these tools to check open ports:

http://www.nirsoft.net/utils/cports.html
http://www.radmin.com/products/utilities/portscanner.php
0

Featured Post

Best Practices: Disaster Recovery Testing

Besides backup, any IT division should have a disaster recovery plan. You will find a few tips below relating to the development of such a plan and to what issues one should pay special attention in the course of backup planning.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Hello, As I have seen there a lot of requests regarding monitoring and reporting for exchange 2007 / 2010 / 2013 I have decided to post some thoughts together and link to articles that have helped me. Of course a lot of information you can get…
Learn about cloud computing and its benefits for small business owners.
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of transferring the five major, necessary Active Directory Roles, commonly referred to as the FSMO roles to another domain controller. Log onto the new domain controller with a user account t…

895 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

14 Experts available now in Live!

Get 1:1 Help Now