Hi All,
I'm having issues with this particular traffic flow and see multiple connections from various source ports to the same high order port TCP/49155 being denied whilst using hyper-v manager through the firewall. Bi-directional AD traffic works fine using DCERPC inspection, just not Hyper-v Manager. I can see the Hyper-v manager is using DCOM ISystemActivator, with RemoteCreateInstance calls for port TCP/49155 but for some reason its refusing to work unless I manually open ports 49154-65535 bi-directionally.
Is this a bug? I have tried 9.2, 9.4, 9.5, 9.6 with no luck. Do anyone have a working solution for Hyper-v Manager through the ASA?
I have experimented with pinhole timers but this does not fix the issue either.
Any advice appreciated,
cheers,
Matt