Koozali.org: home of the SME Server

Ident and XP firewall

sdsheldon

Ident and XP firewall
« on: September 27, 2005, 04:10:29 PM »
Is there anyway to force SME to not use the ident port 113? Problem is when Windows firewall is on it blocks the E-Smith request on port 113 for IDENT, thus no proxy service. It works when we allow port 113 on the firewall but I want to stop E-Smith from using it instead of making a million desktop changes. I have tried the different proxy access methods(transparent, etc.) to no avail.....
Thanks!

Offline treyh

  • ****
  • 116
  • +0/-0
    • http://www.wilnet1.com
hmm
« Reply #1 on: September 27, 2005, 10:56:53 PM »
What port would you like it to use?
Trey - Network Specialist......

sdsheldon

Ident and XP firewall
« Reply #2 on: September 28, 2005, 04:29:23 PM »
None, We would like that it not use any port, and make no request as we are not using IDENT for auditing at this time.
Thanks,

sdsheldon

Ident and XP firewall
« Reply #3 on: September 30, 2005, 08:37:57 PM »
Does anybody even use E-Smith as a proxy? If so I'd expect this problem to have come up more often. Is this a POS or what?

Offline treyh

  • ****
  • 116
  • +0/-0
    • http://www.wilnet1.com
ur problem
« Reply #4 on: October 06, 2005, 04:56:08 AM »
it has to use a port, otherwise it can't "talk" with the computers on your network.

If you are wanting to use SME as a transparent proxy then your best bet is to open that port on every machine in your network.
Trey - Network Specialist......

sdsheldon

Ident and XP firewall
« Reply #5 on: October 06, 2005, 03:51:00 PM »
That's what I was afraid of. Thanks for the input.

Offline treyh

  • ****
  • 116
  • +0/-0
    • http://www.wilnet1.com
another option
« Reply #6 on: October 06, 2005, 05:42:46 PM »
If you don't want open the ports on every machine in your network, installs Dansguardian from dungog.net on your sme box.

It will allow you to change the port to whatever you like, like 8080 which shouldn't be blocked on winxp's firewall

Thats what I use in our office.
Trey - Network Specialist......