<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA predefined services and MS Ports in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004312#M917970</link>
    <description>&lt;P&gt;For a long time now I've been trying to get a handle on what is really required for MS hosts to talk to to other MS hosts but googled doco is scant. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The MS site does not seem to acknowledge the existence of UDP or TCP (surprised: Not me!) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also in the predefined services of the ASA there is nothing for 135 (both tcp and UDP i believe) ... this is pretty weird as it is the MS end point mapper and therefore very common.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any info or links to definitive stuff would be useful.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BTW: I am, of course not letting this MS chatter move over OUTSIDE interfaces .. we have many internal FW's and pvt links into customers where some of this dodgy MS stuff is required in order to support the customers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance,&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 13:02:11 GMT</pubDate>
    <dc:creator>m.surtees</dc:creator>
    <dc:date>2019-03-11T13:02:11Z</dc:date>
    <item>
      <title>ASA predefined services and MS Ports</title>
      <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004312#M917970</link>
      <description>&lt;P&gt;For a long time now I've been trying to get a handle on what is really required for MS hosts to talk to to other MS hosts but googled doco is scant. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The MS site does not seem to acknowledge the existence of UDP or TCP (surprised: Not me!) &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also in the predefined services of the ASA there is nothing for 135 (both tcp and UDP i believe) ... this is pretty weird as it is the MS end point mapper and therefore very common.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any info or links to definitive stuff would be useful.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BTW: I am, of course not letting this MS chatter move over OUTSIDE interfaces .. we have many internal FW's and pvt links into customers where some of this dodgy MS stuff is required in order to support the customers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance,&lt;/P&gt;&lt;P&gt;Mike&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 13:02:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004312#M917970</guid>
      <dc:creator>m.surtees</dc:creator>
      <dc:date>2019-03-11T13:02:11Z</dc:date>
    </item>
    <item>
      <title>Re: ASA predefined services and MS Ports</title>
      <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004313#M917984</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Actually most organizations which are conscious about security don't even allow file sharing directly between hosts. A file-sharing server is setup for this (do a google search for Microsoft DFS). Users are given access to this (with personal folders for each). This makes access-control relatively easy. This also reduces the damage caused by worms and other malware&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 20 Jun 2008 10:35:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004313#M917984</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-06-20T10:35:57Z</dc:date>
    </item>
    <item>
      <title>Re: ASA predefined services and MS Ports</title>
      <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004314#M917993</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Farrukh,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm well aware of the dangers of the basic microsoft ports unfortunately there are a number of apps used by our organization that require some or all of NetBios gunk - the HP-OVO suite and Radia most specifically.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm just finding it really difficult, even with the help of everyone's friend Google, to determine whether these ports are UDP or TCP. Microsoft documentation seems to not realize there is a difference; and HP doco does not seem to provide any information at all. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also I'm still looking for an index of of the predefined ports in the ASA OS. I can't understand why there would be several predefined netbios ports but 135 (seemingly UDP &amp;amp; TCP) - the vital MS end-point mapper - is not defined. Nor the newer SMB tcp&amp;amp;udp-445 port&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So my query is not only about these 'common' (but ill-defined) MS ports, but what is in the list and why are there glaring omissions?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Mike   &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 22 Jun 2008 23:47:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004314#M917993</guid>
      <dc:creator>m.surtees</dc:creator>
      <dc:date>2008-06-22T23:47:46Z</dc:date>
    </item>
    <item>
      <title>Re: ASA predefined services and MS Ports</title>
      <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004315#M917999</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi again,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just had a look at DFS .. we already use it across our multiple sites but these are 'internal' and connected by pvt WAN. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Despite my last post and references to other apps using the annoying netbios stuff, there is  still a need for file sharing across FW boundries - internal &amp;amp; various levels of DMZ (most of these not accessible to the 'outside' but rather cordoned off areas of server groups).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But even using DFS there is a need for prts opened on a FW - possibly both directions for DFS. Do you know what these are?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike    &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jun 2008 00:09:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004315#M917999</guid>
      <dc:creator>m.surtees</dc:creator>
      <dc:date>2008-06-23T00:09:32Z</dc:date>
    </item>
    <item>
      <title>Re: ASA predefined services and MS Ports</title>
      <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004316#M918007</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please check the ports listed under DFS on this link:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://support.microsoft.com/kb/832017" target="_blank"&gt;http://support.microsoft.com/kb/832017&lt;/A&gt;#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Distributed File System&lt;/P&gt;&lt;P&gt;The Distributed File System (DFS) integrates disparate file shares that are located across a local area network (LAN) or wide area network (WAN) into a single logical namespace. The DFS service is required for Active Directory domain controllers to advertise the SYSVOL shared folder.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;System service name: Dfs&lt;/P&gt;&lt;P&gt;Application protocol	Protocol	Ports&lt;/P&gt;&lt;P&gt;NetBIOS Datagram Service	UDP	138&lt;/P&gt;&lt;P&gt;NetBIOS Session Service	TCP	139&lt;/P&gt;&lt;P&gt;LDAP Server	TCP	389&lt;/P&gt;&lt;P&gt;LDAP Server	UDP	389&lt;/P&gt;&lt;P&gt;SMB	TCP	445   ****&lt;/P&gt;&lt;P&gt;RPC	TCP	135   ****&lt;/P&gt;&lt;P&gt;Randomly allocated high TCP ports	TCP	random port number between 1024 - 65535*&lt;/P&gt;&lt;P&gt;* For more information about how to customize this port, see the "Remote Procedure Calls and DCOM" section in the "References" section.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jun 2008 05:16:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004316#M918007</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-06-23T05:16:34Z</dc:date>
    </item>
    <item>
      <title>Re: ASA predefined services and MS Ports</title>
      <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004317#M918012</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Farrukh, useful link. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See my attachment if you want a handy excel speadsheet of same (but without the useful tips your link provides)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Still got all the MS gunk though; looks like we'll never escape it. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And still no reason why Cisco have not predefined TCP-135, the most used MS port (they have Sun's version). Oh well, chalk it down as an oversight.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also no listing/index of ASA predefined ports that I can find. I'll just have to hold my mouse cursor over each item and wait for the pop-up. Or hope they call the port the same thing as everyone else.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jun 2008 07:16:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004317#M918012</guid>
      <dc:creator>m.surtees</dc:creator>
      <dc:date>2008-06-23T07:16:52Z</dc:date>
    </item>
    <item>
      <title>Re: ASA predefined services and MS Ports</title>
      <link>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004318#M918014</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yup we used this document to make security policies for our customers.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Don't focus too much on the pre-defined ports of the ASA/PIX, it seems this is an issue they don't focus much on.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate helpful posts. Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 23 Jun 2008 07:55:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-predefined-services-and-ms-ports/m-p/1004318#M918014</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-06-23T07:55:52Z</dc:date>
    </item>
  </channel>
</rss>

