11-18-2005 06:52 PM - edited 03-10-2019 02:22 PM
Could my Windows 2000 SP4 + ACS v3.23 can install any new Windows 2000 service pack ?
I'm affraid to infect ACS Service.
So, I want to install firewall on this server to block malicious traffic.
However, my ACS used external user database Windows 2000 for authentication.
Who can tell me What protocols or port list they are communication?
I have to avoid these traffic on my firewall.
11-18-2005 11:15 PM
Dear Chen
What do you meen by external user database is it active directory or database on database server?
so if you use active directory the SP will not affect your database because yous ACS is bellonging to a domain!! please give more clear idea
Regards
11-19-2005 12:00 AM
Well, my CiscoSecure ACS on Server-1 (Windows 2000) to forward authentication of wireless client users to Server-2 (Windows 2000 with AD).
My first question is Server-1 can install any new Service Pack in the future?
No any one sure.
So I want to install FW or other secure software to protect Server-1 , but can't infect between Server-1 and Server-2 communication, this is my second question:What communication protocols or ports they are use ?
Regards,
11-19-2005 01:05 PM
Hi cheng
I think you can install any servie pack without problem and the SP4 is the latest one for WIN2000 and you server already has this SP
For your second question you need to specify many protocols according to your active directory config in this link you can find a list of this protocols and the best way is to make debug or logging or use a siniffer to know the exactly protocols flow between your ACS and AD server
Best Regards
11-20-2005 05:29 PM
Yes, Siniffer is my last method if nobody knows their protocols.
I'll refer your "Active Directory Replication over Firewalls" articl to analyze their communication.
Regards,
Gary Chen
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide