Set up Firewall for DNS
Windows Server Forum Index Windows Server
Server discussion on Windows platform.
 
 FAQFAQ   MemberlistMemberlist     RegisterRegister 
 ProfileProfile   Log in to check your private messagesLog in to check your private messages   Log inLog in 
 
Google
 
Web winserverhelp.com
Set up Firewall for DNS

 
Post new topic   Reply to topic    Windows Server Forum Index -> DNS
Author Message
AprilZ
Guest





Posted: Fri Nov 04, 2005 1:50 pm    Post subject: Set up Firewall for DNS Reply with quote

Just want to validate with you guys that I believe I need to ask to open high
ports (>1024), in addition TCP/UDP 53, as DNS initial queries generally using
the high ports..thanks!
Back to top
AprilZ
Guest





Posted: Fri Nov 04, 2005 1:50 pm    Post subject: RE: Set up Firewall for DNS Reply with quote

By the way, are the high ports open on firewalls by default, in general cases?

"AprilZ" wrote:

Quote:
Just want to validate with you guys that I believe I need to ask to open high
ports (>1024), in addition TCP/UDP 53, as DNS initial queries generally using
the high ports..thanks!
Back to top
Ace Fekay [MVP]
Guest





Posted: Mon Nov 07, 2005 9:50 am    Post subject: Re: Set up Firewall for DNS Reply with quote

In news:76EED524-BA68-4BB2-899A-EC9F67F421C2@microsoft.com,
AprilZ <AprilZ@discussions.microsoft.com> made this post, which I then
commented about below:
Quote:
By the way, are the high ports open on firewalls by default, in
general cases?

"AprilZ" wrote:

Just want to validate with you guys that I believe I need to ask to
open high ports (>1024), in addition TCP/UDP 53, as DNS initial
queries generally using the high ports..thanks!

No ports are open on a firewall until you open them. As for the empherical
ports (UDP >1023), for a Windows client, yes, you will need to open that.
But the question begs, what is your scenario and design intentions? Opening
up that range may be hazardous to your machine's health.

--
Ace

This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.

If this post is viewed at a non-Microsoft community website, and you were to
respond to it through that community's website, I may not see your reply
unless that website posts replies back to the original Microsoft forum.
Therefore, please direct all replies ONLY to the Microsoft public newsgroup
this thread originated in so all can benefit or ensure the web community
posts it back to the original forum.

Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft MVP - Windows Server Directory Services
Microsoft Certified Trainer
Infinite Diversities in Infinite Combinations.
=================================
Back to top
 
Post new topic   Reply to topic    Windows Server Forum Index -> DNS All times are GMT
Page 1 of 1

 
You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum




New Topics Powered by phpBB