Answered opening port

  • Tuesday, January 22, 2013 9:27 AM
     
     

    I would like to open the server below and the port then be able to telnet to it. currently am able to ping it.

    what do i do? am running TMG 2010.

    Ports to open: 4500

    Server: zoncontrol.dnsalias.com


    Meshack

All Replies

  • Tuesday, January 22, 2013 11:32 AM
     
     

    Hi,

    create a Firewall policy rule to allow access to port 4500. You have to create a new protocol definition for port 4500 (TCP/UDP), or simply extend the Firewall policy rule which allows ICMP to the Server with the new protocol:
    http://technet.microsoft.com/en-us/library/cc995253.aspx


    regards Marc Grote aka Jens Baier - www.it-training-grote.de - www.forefront-tmg.de - www.nt-faq.de

  • Tuesday, January 22, 2013 3:44 PM
     
     

    hi,

    i've created the rule as per below but it doesnt telnet


    Meshack

  • Tuesday, January 22, 2013 4:15 PM
     
     
    Hi, than use TMG Live logging to see which rule blocks the requst

    regards Marc Grote aka Jens Baier - www.it-training-grote.de - www.forefront-tmg.de - www.nt-faq.de

  • Wednesday, January 23, 2013 8:47 AM
     
     
    Denied Connection
    Log type: Firewall service
    Status: Access is denied.
    Rule: Default rule
    Source: Local Host (PROXY EXTERNALADAPTER:36869)
    Destination: External (TARGET SERVER:4500)
    Protocol: Unidentified IP Traffic (TCP:4500)
    Additional information
    • Number of bytes sent: 0 Number of bytes received: 0
    • Processing time: 0ms Original Client IP: PROXYEXTERNAL

    Meshack

  • Wednesday, January 23, 2013 8:48 AM
     
     
    Seems its not seeing my rule

    Meshack

  • Wednesday, January 23, 2013 9:13 AM
     
     

    Hi,

    you want to allow this port from the TMG Server (Local Host) to the external Server?


    regards Marc Grote aka Jens Baier - www.it-training-grote.de - www.forefront-tmg.de - www.nt-faq.de

  • Wednesday, January 23, 2013 9:31 AM
     
     
    yeah sure,, advise please

    Meshack

  • Thursday, January 24, 2013 8:00 AM
    Moderator
     
     Answered

    Hi,

    Thank you for the post.

    You should create access rule to allow telnet from localhost to external and ensure the target 4500 port is open.

    Regards,


    Nick Gu - MSFT