AprilZ
Guest
|
Posted:
Fri Nov 04, 2005 1:50 pm Post subject:
RE: Set up Firewall for DNS |
|
|
By the way, are the high ports open on firewalls by default, in general cases?
"AprilZ" wrote:
| Quote: | Just want to validate with you guys that I believe I need to ask to open high
ports (>1024), in addition TCP/UDP 53, as DNS initial queries generally using
the high ports..thanks! |
|
|
Ace Fekay [MVP]
Guest
|
Posted:
Mon Nov 07, 2005 9:50 am Post subject:
Re: Set up Firewall for DNS |
|
|
In news:76EED524-BA68-4BB2-899A-EC9F67F421C2@microsoft.com,
AprilZ <AprilZ@discussions.microsoft.com> made this post, which I then
commented about below:
| Quote: | By the way, are the high ports open on firewalls by default, in
general cases?
"AprilZ" wrote:
Just want to validate with you guys that I believe I need to ask to
open high ports (>1024), in addition TCP/UDP 53, as DNS initial
queries generally using the high ports..thanks!
|
No ports are open on a firewall until you open them. As for the empherical
ports (UDP >1023), for a Windows client, yes, you will need to open that.
But the question begs, what is your scenario and design intentions? Opening
up that range may be hazardous to your machine's health.
--
Ace
This posting is provided "AS-IS" with no warranties or guarantees and
confers no rights.
If this post is viewed at a non-Microsoft community website, and you were to
respond to it through that community's website, I may not see your reply
unless that website posts replies back to the original Microsoft forum.
Therefore, please direct all replies ONLY to the Microsoft public newsgroup
this thread originated in so all can benefit or ensure the web community
posts it back to the original forum.
Ace Fekay, MCSE 2003 & 2000, MCSA 2003 & 2000, MCSE+I, MCT, MVP
Microsoft MVP - Windows Server Directory Services
Microsoft Certified Trainer
Infinite Diversities in Infinite Combinations.
================================= |
|