CPUG

The Check Point User Group

A Resource For The Check Point Community.  Fast.  Useful.  Independent.

1. CCSA/CCSE One-Week Dual-Certification Training Course with CPUG in San Francisco!
    Courses Starting 12/8, (2009) 1/19, 2/9, 3/9, 4/6, 5/4, 6/8, 7/6, 8/3.
2. Join Us On LinkedIn - We now have a CPUG group.


Go Back   CPUG: The Check Point User Group > Check Point Firewall-1/VPN-1 Platforms > Nokia And IPSO
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 2006-04-12
Junior Member
 
Join Date: 2006-03-29
Posts: 6
Rep Power: 0
b1tbuck3t has an average reputation (10+)
Default Nokia fwr55 openports on public interface

I have a question concerning open ports/listening for any ip coming into the domain through the fw. For example when I do an outside scan I see can that port 264 is open, then I went onto the box itself and did a netstat -a and verified the iptable.

PROTO localaddress foreignaddress State
tcp 0 0 *.264 *.* LISTEN


So i did some digging on the defined services that use this port and it pertains to port BGMP/cisco and also secure remote. I have verified every rule in the rule base (services) and do not see anything getting assigned to port 264.

I also have about 10 other ports that I can not account for that are also listening. Any info will be appreciated.

Last edited by b1tbuck3t; 2006-04-12 at 11:34.
Reply With Quote
  #2 (permalink)  
Old 2006-04-12
Junior Member
 
Join Date: 2006-03-29
Posts: 6
Rep Power: 0
b1tbuck3t has an average reputation (10+)
Default Re: Nokia fwr55 openports on public interface

I did some searching on previous post and found that it is a fw ng standard port used with secure remote. Does anyone know where this information is obtained from. I crossed referenced the ports they listed and the ones that I found, I have some 458x ports that I can not find any info on to what services they pertain to. Any ideas?
Reply With Quote
  #3 (permalink)  
Old 2006-04-13
Senior Member
 
Join Date: 2006-01-26
Location: Moscow, Russia
Posts: 706
Rep Power: 3
kva.kva has an average reputation (10+)
Default Re: Nokia fwr55 openports on public interface

From Dashboard
TCP 264 - Check Point VPN-1 SecuRemote Topology Requests.

This port is opened if option "Accept VPN-1 Pro/Express control connections" is enable.
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


All times are GMT -7. The time now is 13:38.


Powered by vBulletin® Version 3.7.4
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0