Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations MikeeOK on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

What ports to open for Citrix 1

Status
Not open for further replies.

lengoo

IS-IT--Management
Jan 15, 2002
381
GH
Dear All,
I want to allow access to a Citrix box through either the Nfuse web interface or the ICA client.
What explicit ports would I need to have opened for this.. I want to tie it down to the absolute tee and not want to open any unnecessary ports on our firewall.

Many thanks
ps. We are using Citrix Metaframe xp SP2, the firewall is Checkpoint
 
NFuse: 80 in and outbound for normal use. (not recommended since username and password travel over the web in plain text format) 443 in and outbound when used in https.

Citrix: 1494 inbound, and high ports (1023-5000) outbound.

Better would be to use CSG, which uses 443 in and outbound only, and is mutch more secure then a direct citrix connection.


Free citrixprinting support
 
I would definately recommend Citrix Secure Gateway for this sort of access..

Otherwise, you could set up a VPN or tunneling to a safe machine behind the DMZ. Not recomended though. Some people use a dialup software like PC Anywhere to access a box inside the DMZ via an analog connection then run at LAN speeds from within, but also not a particularly secure method)
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top