RE: Netmeeting through PIX

From: Brian (signal@xxxxxxxxxx)
Date: Sat Dec 09 2000 - 20:14:19 GMT-3


   

hmm, if your using a pix or ios firewall you could probably use
application level packet inspection, maybe with some reflexive access
lists to allow most of that stuff to work dynamically (at least for stuff
originated on the inside)

Brian

On Sat, 9 Dec 2000, Aaron K. Dixon wrote:

> I haven't tried this before, but according to microsoft the following ports
> need to be opened.
>
> Port Function Outbound Connection
> 389 Internet Locator Service (ILS) TCP
> 522 User Location Service TCP
> 1503 T.120 TCP
> 1720 H.323 call setup TCP
> 1731 Audio call control TCP
> Dynamic H.323 call control TCP
> Dynamic H.323 streaming Real-Time Transfer Protocol (RTP) over UDP
>
> If you use a firewall to connect to the Internet, it must be configured so
> that the IP ports are not blocked.
>
> To establish outbound NetMeeting connections through a firewall, the
> firewall must be configured to do the following:
>
> Pass through primary TCP connections on ports 389, 522, 1503, 1720, and
> 1731.
> Pass through secondary TCP and UDP connections on dynamically assigned ports
> (1024-65535).
>
>
> Reference:
> http://www.microsoft.com/windows/NetMeeting/Corp/reskit/Chapter4/default.asp
>
>
>
> Regards,
> Aaron K. Dixon
>
> -----Original Message-----
> From: nobody@groupstudy.com [mailto:nobody@groupstudy.com]On Behalf Of
> Jim Bond
> Sent: Saturday, December 09, 2000 12:39 PM
> To: cisco@groupstudy.com
> Cc: ccielab@groupstudy.com
> Subject: Netmeeting through PIX
>
>
> Hello,
>
> I'm setting up a MS Netmeeting server behind a PIX,
> persons outside of PIX will call in. Which ports I
> should open on the PIX?
>
> Thanks in advance.
>
>
> Jim
>



This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 08:26:00 GMT-3