UDP ports for Internet Explorer



Hi,
Does anybody know how UDP ports are assigned to IE? What I'm trying to do is
use the TCP/UDP filtering to allow only certain ports to be open.
For example I've allowed TCP 3389 for Remote Desktop, TCP 80 for HTTP and
TCP 21 for FTP.

My problem is coming the UDP side of things. I want this system locked down
to all in coming traffic except on the above mentioned ports and I also need
the ability to connect to the web using IE.
What I've found on one system I have is that IE uses seemingly at random UDP
ports from 1034 to 1080 but on another machine it's up in the 3000 range. Is
this assigned completely at random from system to system?

Also, can somebody shed some light on the following. On machine one, if I
setup the UDP filtering to not allow any ports open IE can't connect. As
expected. However, if I allow UDP ports 1034 to 1038 IE can connect to the
web on this system even if it actually uses a port higher than 1038, such as
UDP port 1080.

Can anybody explain this or point me to some resource that can help me
understand this.


thanks much,


Joe


.



Relevant Pages

  • Re: Iptables udp problems
    ... > another computer on my local network, scanner shows all udp ports ... first INPUT -p tcp you accept all incoming traffic. ... policy of course your ports show open. ... I would definitely change the first INPUT -p tcp rule to LOG ...
    (comp.security.firewalls)
  • Re: TCP/IP Filtering in Windows 2000?
    ... I already have TCP filtering on, with "Allow only" for TCP ports set and the ... fine when UDP Ports is set to "Allow all". ...
    (microsoft.public.security)
  • Re: Iptables udp problems
    ... >> another computer on my local network, scanner shows all udp ports ... With my second INPUT -p tcp i deny remaining rst packets. ...
    (comp.security.firewalls)
  • Re: TCP/IP filter & SMTP
    ... Also, if you are using MS SMTP server or Exchange server, you'll need to ... and I can't find any other ports that SMTP might use. ... > If I enable all UDP ports, ...
    (microsoft.public.inetserver.iis.security)
  • Re: SBS2003 Outlook HTTP/RPC not working
    ... Do you have rpc listening on any UDP ports? ... I also still have TCP ...
    (microsoft.public.windows.server.sbs)