Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations Shaun E on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Win2k server not listening on port 445, domain issues

Status
Not open for further replies.

jstevens

IS-IT--Management
Jul 31, 2001
144
US
Greetings,

I am setting up a few remote workstations over an ipsec vpn tunnel. I ran into a problem where I am not able to logon and browse the domain effectively. Doing some research, I found that my win2k sbs server is not listening on port 445 (as reported by netstat and tcpmon, smb port microsoft-ds)

My step is to remove file and print sharing but have not done so yet. I have run the iis lockdown tool, I have never heard of this port being disabled or secured by a ms tool. There is a way to edit the registry to disable 445 service but the keys are all intact.

On the remote machines, I have enabled netbios over tcpip, thinking they should try to connect on 137/139, but they do not seem to be doing so and logon is taking 15 minutes and the machines are still unable to browse the network. I have pointed both wins and dns soley to the ntserver with no results.

The weird part is, the local machines are working ok, I am assuming they are rolling over to 139. Is there a way to force the remote workstations to use 139 and not 445 temporaily while I resolve the 445 issue?

Thanks

Jason
 
Well, reinstalled f&p sharing, no progress.

Any ideas?

Jason
 
Is this an internal blockage or an external? My ISP just started blocking port 445, it's comcast cable. Major PITA
 
Internal of the server. Doing a netstat, or using tcpview, 445 is not listening. Had to open an incident with MS. Will let yall know what I find out.

Jason
 
Well,

I have found the issue, sort of. The workaround is to just enable netbios over tcpip (netbt) and use the original 139 smb setup. However, banging my head, I decided to do some comparison analysis. I started looking at every 2000 server, they all have 445 listening, this is with or without ISA. I then started looking at every windows 2000 small business server, bingo, all the sbs servers have 445 disabled, with or without ISA.

I would say, this is a problem, I have never heard of this being a difference between standard 2000 and sbs?

Weird

Jason
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top