Re: Allowing all AD traffic to DCs

Tech-Archive recommends: Repair Windows Errors & Optimize Windows Performance



Hello supersonic_oasis,

See here:
http://support.microsoft.com/kb/555381

Best regards

Meinolf Weber
Disclaimer: This posting is provided "AS IS" with no warranties, and confers no rights.
** Please do NOT email, only reply to Newsgroups
** HELP us help YOU!!! http://www.blakjak.demon.co.uk/mul_crss.htm

Hi all,

We run Windows 2003 domain. I am having trouble opening the proper
ports on all DCs needed for proper functionality of FRS, and group
policy. I remember I looked at a microsoft white paper a while back,
and everything worked fine, but we've been having trouble with group
policy lately, so I checked the firewall log and saw that traffic
between DCs is getting dropped. And it seems every time I open a port
that is being blocked, another one pops up.

Can anyone give me a complete list of every port that needs to be
opened for DC to DC traffic. Or, is there an easier way using the
windows Firewall? For instance, can I somehow make it so that if any
traffic comes from a certain IP, then allow it?

Any help is appreciated, thanks.



.



Relevant Pages

  • Re: trouble creating policy to access port on internal nic?
    ... Make sure this access rule is on top of the firewall policies list. ... I can see that port 6502 is being denied with the ... I created a firewall policy that allowed ports 6502-6503 for tcp (receive ... I get the same Denied - default rule in the firewall log. ...
    (microsoft.public.isa)
  • Re: ZoneAlarm log shows probes *from* 127.0.0.1 ?
    ... > dump,probably windows machines. ... day) and since its a dialup connection, it would be related to howoften ... firewall log, this only happens sometimes... ... Use a port listener,bind it to port 80 on the loopback, play around ...
    (comp.security.firewalls)
  • Re: cant remote connect to mailman on panther server
    ... from your remote machine, where adminport is 80 or whatever the mailman ... But I don't know for sure that mailman is on port 80 ... But it would appear the firewall log is lying, or else I can't read, or ...
    (uk.comp.sys.mac)
  • Re: Keep connecting to remote host on port 7869
    ... > My redhat linux mail host keeps connecting to other remote host quite ... > frequently on remote port 7869. ... > Below is the firewall log: ... This will make the linux box hang waiting ...
    (Incidents)