Re: Any Good white Papers on remote access



A firewall called netpliot the internal ip is 192.168.1.1 and the external
is 192.168.1.77

Jason



"Costas" <cpstechgroup@xxxxxxxxx> wrote in message
news:09D15D46-A1A9-4617-8C9F-6737A372040E@xxxxxxxxxxxxxxxx
Port 4125 opens up on an as-needed basis. Something must be wrong in the
firewall configuration. What kind of firewall do you have? What is its
internal IP? What is the IP of the External NIC of the server?

--
Costas


"Jason" <Jason@xxxxxxxxxxx> wrote in message
news:OHYNHCpBIHA.3548@xxxxxxxxxxxxxxxxxxxxxxx
Sorry i have done that
Another thought could the rrs be corrupt somehow?
Can i disable it then re enable will this cause any probelms??
Silly question i ran netst -an i can't see port 4125 open but i have
followed all the instructions

should it say

tcp 192.168.1.1:4125 ??

Jason



"Costas" <cpstechgroup@xxxxxxxxx> wrote in message
news:0511E3FF-3045-4351-9C47-3933AC69C20E@xxxxxxxxxxxxxxxx
Is the IP of the external NIC of your server 192.168.1.1 or is that the
IP of your router? (it seems like a router IP). If the external NIC IP
is, for example, 192.168.1.2, then in the router you should open the
4215 and specify that IP as the destination

--
Costas


"Jason" <Jason@xxxxxxxxxxx> wrote in message
news:uBgo70oBIHA.2324@xxxxxxxxxxxxxxxxxxxxxxx

We have 2 nics on the server

The question do you port foward 4125 to the external NIC server How do
you do that???

All i did was open up the external firewall add port foward tcp 4125 to
the server ip address e.i 192.168.1.1 do i have to do the same then
point it to the second ip address??

Jason




Costas" <cpstechgroup@xxxxxxxxx> wrote in message
news:94AD2598-63CF-4DA1-8A76-4EAC02B77CBA@xxxxxxxxxxxxxxxx
How many NICs on the server? If you can connect successfully using
the internal IP, the problem is not with the server, but with some
kind of firewall restrictions. If you have two NICS, do you port
forward 4125 to the external NIC of the server?

--
Costas


"Jason" <Jason@xxxxxxxxxxx> wrote in message
news:exh71soBIHA.4200@xxxxxxxxxxxxxxxxxxxxxxx
Hi Costas

Yeap i have try that as well I disable the LAN and connect to
outsider isp that try https:// external ip / remote with no joy Is
there are logfiles i can look @?

is it a problem with our external router??


Jason



"Costas" <cpstechgroup@xxxxxxxxx> wrote in message
news:%23JJzIooBIHA.1212@xxxxxxxxxxxxxxxxxxxxxxx
When you run CEICW the port is opens for you on the server. Since
you opened port 4125 on the firewall and you forwarding to the
server, that should be ok as well. The other issue you might have,
is that you try to access RWW, using the external IP, from within
your network.

There are routers that do not allow that, so you'll have to either
remotely connect to an external computer and try to use the external
IP of your server, or be somewhere, outside your network, to try it.

--
Costas


"Jason" <Jason@xxxxxxxxxxx> wrote in message
news:eSRkcloBIHA.3548@xxxxxxxxxxxxxxxxxxxxxxx
Hi Costas

If i type https:// ipaddress / remote i can get to rthe rrw page

if i type https:// external ip / Remote i cet an error i got the
external ip address from www.whoismyip.com

yes i ran ceucw and did select the remote web workspace

yes i did open the port 4125 on your external firewall a question
does it have to be open on sbs2003 server? how do u do that if so??

i don't understand whats happening i have followed all the books on
this to the letter

Cheers

Jason




"Costas" <cpstechgroup@xxxxxxxxx> wrote in message
news:8CA1BDFC-1D77-4D49-A5EE-BD5298322273@xxxxxxxxxxxxxxxx
The MX record is not related to remote access but to the mail
server. We can talk about that later. For now, if I understand
correctly, you want to use RWW and you can't. When you type
https://IPAddress/Remote do you get an error and if yes, what is
that error? Did you run CEICW and did you select the Remote Web
Workspace service? Did you open port 4125 on your router and it
you forward it to the internal IP address of the server?

On a separate note, you need an A record at the ISP to point to
the external IPAddress of your server, so you can type
https://name.domain.com/remote instead of using the IP number.


--
Costas


"Jason" <Jason@xxxxxxxxxxx> wrote in message
news:eEmoxvmBIHA.4752@xxxxxxxxxxxxxxxxxxxxxxx
Hi

We trying to set up remote access for our users using https://
ipnumber/remote we can access the page we have enable remote
access from the server wizard we have allows our extend firewall
to let traffic in it just not working do we have to set up a mx
record?? to point @ our extend ip address

so we are going to start again with a good white paper

Cheers

Jason
















.



Relevant Pages

  • Re: How to Maintain an IIS Server?
    ... > server running on a Windows 2000 server. ... before a firewall and antivirus have been installed]. ... open ports; however, this will not identify which program is using the port. ...
    (microsoft.public.inetserver.iis.security)
  • Re: CEICW fails at firewall config
    ... ISA Server prevents connection to a remote desktop when you connect through ... Remote Web Workplace on a Windows Small Business Server 2003-based computer ... Acceleration Server as a firewall. ... connection uses TCP port 4125. ...
    (microsoft.public.windows.server.sbs)
  • Re: Directory Service Event 1311
    ... I checked the router ACL and indeed all traffic from the subnet was ... Once I permitted in the ACL, all port queries worked fine. ... I just wanted a little confirmation, that it was the firewall blocking it, ... Run it from the server that you cannot join ...
    (microsoft.public.windows.server.active_directory)
  • Re: How to Maintain an IIS Server?
    ... >> server running on a Windows 2000 server. ... > before a firewall and antivirus have been installed]. ... > program or executable using that port. ...
    (microsoft.public.inetserver.iis.security)
  • Re: Activesync / Airsync - Alternative Ports
    ... Setup a reverse HTTP proxy. ... Another idea is to use the PPTP capabilities of a Windows Server to allow ... Satellite - Cisco Firewall - Exchange Server ... So on the server side you would configure the port 80 to redirect to ...
    (microsoft.public.pocketpc.activesync)