It looks like it uses dynamic generated ports ( there is one fixed 1863/tcp),
but than it uses 4656, 4648, 9010, 3478 ...

Is there any security server ( proxy), which can handle that?

As far aas I knot i tis SIP based protocol.

Thanks,

Michal Kolarik

-----Original Message-----
From: Anderson, Brian [mailto:[EMAIL PROTECTED] 
Sent: 26. února 2007 15:57
To: Kolařík Michal
Subject: RE: [FW-1] MSN messenger video conversation

Have you looked in SmartView Tracker to see what ports it needs?  Is it using a 
random destination port above 1024?  If so, you may want to find a way to 
modify the msn client (.ini file?).

Have you looked at the source port?  Is it above 1024?  If not, that's not 
allowed by default and is not following proper protocol (not RFC compliant).  
If it's a static source port, you can allow that by modifying the service 
properties.

Good luck. 

-----Original Message-----
From: Mailing list for discussion of Firewall-1 [mailto:[EMAIL PROTECTED] On 
Behalf Of Kolarík Michal
Sent: Monday, February 26, 2007 6:38 AM
To: [email protected]
Subject: [FW-1] MSN messenger video conversation

Hi all,

 

I need to run msn video conversation from client behind fw-1 NGX on SPLAT.

It works only when I allow all traffic from this host in the LAN.

Is there any better way how to do that?

 

Thank you for nay comments,

 

Michal Kolarik


=================================================
To set vacation, Out-Of-Office, or away messages, send an email to [EMAIL 
PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your subscription options, email 
[EMAIL PROTECTED] =================================================

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to [EMAIL PROTECTED]
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
[EMAIL PROTECTED]
=================================================

Reply via email to