Re: GPO and Kerio Winroute Firewall

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



In news:483fb435$0$28783$426a34cc@xxxxxxxxxxxx,
Hanibal <no@xxxxxxxxxxx> typed:
Hi to all,
I search what are the ports used by GPO with Windows 2000 Server
because with Kerio WinRoute firewall, the GPO aren't received by the
XP clients. I have the same problem if I want integrate a XP client
on my Win2000 domain.
Someone help me please ?
Thanks

You will need to provide more info in order to help you.

Keep in mind, there are over 29 ports and some port ranges that need to be
opened up in a firewall (not a NAT device) to allow machines in an AD domain
to communicate. NAT devices CANNOT traverse domain communication traffic
unless using the NAT device as a VPN endpoint.

Is the Kerio WinRoute firewall a NAT device?
Are the clients internal or external?
Are you trying to connect workstations from the internet through the Kerio
without a VPN?

Can you provide an ipconfig /all from one of the clients and one of the
domain controller?

Can you also please elaborate on where the clients are, are they joined to
the domain, and any other info that may be helpful.


--
Regards,
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT,
MVP Microsoft MVP - Directory Services
Microsoft Certified Trainer

For urgent issues, you may want to contact Microsoft PSS directly. Please
check http://support.microsoft.com for regional support phone numbers.

Infinite Diversities in Infinite Combinations


.



Relevant Pages

  • Whos blocking these ports? Please help...
    ... server - one is called Vicomsoft Internet Gateway (proxy server, ... IG basically takes over the TCP/IP routing and does this using ... Each of these ports uses a NIC in the server. ... All the clients are assigned IPs ...
    (microsoft.public.win2000.security)
  • Re: Firewall advice
    ... > The VPN will only way for outside users to connect. ... old ipchains you'd be allowing inbound on the unpriv'd ports anyway. ... You'll need to let 3389 in from the PPTP sessions. ... IP's if only a few clients) to route through. ...
    (comp.security.firewalls)
  • Re: Open Ports
    ... want the ports open even ifs all in house and behind the hardware firewall??? ... it opens up in demo mode. ... server is Cisco Catalyst Express 500 switches for voice over IP. ... will take requests from the clients. ...
    (microsoft.public.windows.server.general)
  • RE: [fw-wiz] Defense in Depth to the Desktop
    ... feel that servers are the best defended resources on the network. ... while exposing the servers to the risks of the clients. ... MAC isolation (or private vlans in Cisco(tm) speak) block any traffic to vlan ... ports that are not designated as "community" or "public" ports. ...
    (Firewall-Wizards)
  • Re: NAT Problem Port Forwarding
    ... If the clients are XP with firewalls enabled (or any OS with a firewall ... you will have to open these ports on the clients as well. ... > -Internal NIC as private interface... ... I need to forward traffic from the internet to my Windows 2003 DC TCP ...
    (microsoft.public.windows.server.networking)