My external W2K DNS server sits in a DMZ. Can someone tell me what other ports aside from TCP/UDP 53 (DNS) need to be opened up on my PIX firewall going from my DMZ to the internal network?
Depends on what you're providing, but a basic set would consist of DNS (53), SMTP (25), FTP (20,21), HTTP (80), TFTP (69), POP3 (110), and possibly Telnet (23). Also, you'll want to allow any inbound traffic that's in direct response to an outbound query, what I believe is called a "statefull connection".
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.