CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Internal Security > Endpoint Security (Formerly Integrity)
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-10-16
Junior Member
 
Join Date: 2006-08-23
Posts: 17
Rep Power: 0
EAP56 has an average reputation (10+)
Default SecureClient Port requirements

Hi,

From the SecureRemote thread I found a thread that pointed out which ports are required by SecureRemote/SecureClient (See below). My question is do we need to open these ports using the Integrity Server or is there another means to configuring SecureClient with the Integrity Firewall?

Open the following ports and allow the following protocols:
protocol 50 for ESP
UDP 2746 for UDP Encapsulation
UDP 500 for IKE
TCP 500 for IKE over TCP
TCP 18231 for Policy Server logon when the client is inside the network
UDP 18233 for Keepalive protocol when the client is inside the network
TCP 18232 for Distribution Serer when the client is inside the network
TCP 264 for topology download
UDP 259 for MEP configuration
UDP 18234 for performing tunnel test when the client is inside the network
TCP 18264 for ICA certificate registration

Thanks.
Reply With Quote
  #2 (permalink)  
Old 2006-10-17
Senior Member
 
Join Date: 2005-08-29
Location: Upstate NY
Posts: 1,670
Rep Power: 5
chillyjim has an average reputation (10+)
Send a message via AIM to chillyjim Send a message via Skype™ to chillyjim
Default Re: SecureClient Port requirements

Quote:
Originally Posted by EAP56 View Post
Hi,

From the SecureRemote thread I found a thread that pointed out which ports are required by SecureRemote/SecureClient (See below). My question is do we need to open these ports using the Integrity Server or is there another means to configuring SecureClient with the Integrity Firewall?
Install SecureClient then install Integrity (6.0 or latter) and all should be well.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 00:35.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0