12-21-2010 02:01 AM
Hi,
I have couple of servers in DMZ that needs to be backedup by BESR 2010. I have the clients installed and able to backup for quite sometime. The below are the ports that were opened on the Firewall for the server to agent communication for backup as i have restricted the dcom ports to 5001-5020 on the backup server as suggested in http://www.symantec.com/business/support/index?page=content&id=TECH54862. Since last couple of months the sever is trying to communicate on different ports resulting in failures. Can someone let me know are there any other ports that needs to be added apart from below?
137 (inbound and outbound TCP and UDP)
· 138 (inbound and outbound UDP)
· 139 (inbound and outbound TCP)
· 5001-5020 (TCP & UDP, Inbound and Outbound)
Thanks,
Sridhar
12-21-2010 04:26 AM
Afaik this are the only ports when you don't use a BESR 2010 Management solution.
You could you post one of those error messages ?
12-21-2010 06:56 AM
when i try to connect to those machines from BESR console, it ends up in poping up a window to enter user name and password of the target machine which will fail even after entering the correct credentials.
But when i check the FW logs, i can see couple of ports getting blocked. Enabling those ports will allow to connect to the server.
I have found the below article which says to enable ports from 50001-5100 and creating separate FW rules. Currently all the ports have been enabled in a single rule.
http://www.symantec.com/business/support/index?page=content&id=TECH55824
Thanks,
Sridhar
12-21-2010 12:29 PM
Hm, at least the document says it only applicable for BESR 6.5, 7, 8 and 8.5 but not for 9.0 (aka 2010). You might call Symantec to confirm that this also applies to BESR 2010.
01-13-2011 01:03 AM
Any updates here ?
02-02-2011 05:29 AM
Any updates here ?
02-25-2011 03:33 AM
Any news here ?