Ports 80 and 443

I know that root is the only user-id that can manage these ports (80 and 443), but right now I need to use other user-id for assiggning these ports (for security reasons) , how can i do this one?, is enough assign one user to root group?
thanks!!!!

I believe that with that tunable you can increasethe
value, but not decrease it. You can also assign
specific ports to be privilged, but not releaselow
ones.
http://www.sun.com/blueprints/1299/network.pdf
Page 20 shows an example of bumping it up, but I
don't see why you couldn't do it in the reverse.It's not explicitly mentioned, but if you try with 'ndd', it won't let you lower that number below 1024. The section is on "adding" ports to the list, not removing them.
There's no way to do this without being root or running solaris 10 (where you can use the net_privaddr privilege).
Darren

Similar Messages

  • How I can solve this problem or manipulate it ports 80,443 are closed by ISP and they don't want to open it

    hi,
     I see that I have a particulier abonnee of my ISP , which has closed all the ports for security reason and they don't want to open  any of it 80,443 ect.
    suppose If I want to use Essential server 2012  how I can solve this problem , essential wants domain name whith A record.
    I asked DDNS service provider if I lease from them a domain name whith A record  would that help to open or manipulate the port 80,443  they said that I have to solve this problem myself . they lease only domain names with dynamic dns records.  
     so what can be a solution the ISP provider won't open this ports , how I can solve this problem .   domain name with ip adres is not helping so what it's go to help?
    thanks
    johan
    h.david

    The domain name in this instance is only used for remote access, and is seperate from the active directory domain name.
    If your ISP blocks port 80 and 443, and you dont intend to use remote access anyway, the wizard will likely not complete successfully whether you have a valid domain name or not.
    Robert Pearman SBS MVP
    itauthority.co.uk |
    Title(Required)
    Facebook |
    Twitter |
    Linked in |
    Google+

  • How can I set up a WD My Cloud with my Airport Extreme - I can't get it to open ports 80 and 443?

    For remote internet access to the WD My Cloud Mirror, I have been advised that ports 80 and 443 must be open in order to reach the WDMyCloudMirror.  My Motorola Gateway (Surfboard SB6141) is connected directly to my Airport Extreme (WAN port) which is in turn connected to the WDMyCloudMirror (all by ethernet cables).  I do not have FULL instructions on how to properly manually configure the Airport Extreme to open the ports.  I have tried an earlier posting which provides many of the steps, but not all of the required information is included (how to determinge the IP address to be assigned, etc.).  I did the best I could with the information given, but the test using "YouGetSignal" showed the ports as still closed and attemps to reach the WDMyCloudMirror by the internet failed as well (of course).  The WDMyCloudMirror has enough Apple "stuff" included in it (software, I suspect) that an Apple legal acceptance is required for its set-up, yet Western Digital Tecnical Support is unable (or unwilling?) to help with this aspect of its configuration required to work within the Airport Extreme environment.  I have returned the WD My Cloud Mirror to Amazon as "not able to work", but I have not given up the hope that I can eventually get the ports open so that I can get this cloud device, or one similar, to permit remote internet access.

    Port Forwarding.....or Port Mapping....as Apple calls it is a difficult and complex configuration method for most users. Because there are so many variables involved in this type of setup, it is not possible to provide a step by step guide that will work for everyone with all devices.
    It is possible that a setup guide exists for the the WD drive and AirPort Extreme, but you will have to go looking for it on the Internet. Even if you find one, it may not be tailored to your specific situation or needs.
    Sometimes, you can do everything right....at least according to someone's article or "how to" guide, and things still will not work correctly.
    In situations like this, when you really don't know what to do, you need to enlist the aid of an IT pro, who will know what to do based on your particular products and unique circumstances. Sometimes....they won't be able to get things working either due to particular circumstances.
    But, before you do this, I would strongly recommend that you use a Static IP address for your Internet connection with your ISP. If you do not have this now, contact them to ask them if they offer this type of connection. Expect to pay more for this type of service, of course.

  • Windows 2008 Server contacting multiple public IP on port 80 and 443

    Windows 2008 Server contacting multiple public IP on port 80 and 443
    Source : Microsoft Lync 2010
    Port : 80
    Destination : unknown.prolexic.com
    Source : Internet Explorer
    Port : 80
    Destination :a-0001.a-msedge.net
    Source : Internet Explorer
    Port : 443
    Destination :204.79.197.200
    Is this virus? how to stop the same?

    Org name of the IP shows Microsoft Corporation
    Since its hits on firewall , i will have to stop the same 
    but not sure for what its being contacted to these Ips
    OrgName:        Microsoft Corporation

  • Can't update iOS 8 on my iPhone5 through iTunes on Windows 8 (error 3004, 3194). Updated host file, opened port 80, 443; turned off security system and firewall, etc. But nothing works. How to solve this problem?

    Can't update iOS 8 on my iPhone5 through iTunes on Windows 8 (error 3004, 3194). Updated host file, opened port 80, 443; turned off security system and firewall, etc. But nothing works. How to solve this problem?

    Hi the_mad_movies,
    It seems like this article will be the best option for addressing this issue:
    Error 3194, Error 17, or "This device isn't eligible for the requested build"
    http://support.apple.com/kb/ts4451
    Thanks for coming to the Apple Support Communities!
    Cheers,
    Braden

  • I keep getting error 3004 when i try restoring and updateing my iphone 4 to iOS 7 i did everything 1. flushed dns 2. edited hosts 3. updated itunes and downloaded new one 4. switched usb ports 5. disabled antivirus 6. enabled ports 80 and 443 7. disabled

    I keep getting error 3004 when i try restoring and updateing my iphone 4 to iOS 7 i did everything 1. flushed dns 2. edited hosts 3. updated itunes and downloaded new one 4. switched usb ports 5. disabled antivirus 6. enabled ports 80 and 443 7. disabled firewall 8. even tryed putting mobile in DFU mode to restore it not of this worked so please help me

    please replyyy i'm stuck on this like whole week

  • How to open ports 119 and 443 in my Mac?

    I've been trying to use the UseNeXT software with my Mac with no success. I called their support and they told me I need to open the ports 119 and 443. I contact Apple support and they told me that is beyond their scope (???).
    Can somebody help me with that? I tried to find it online, but all tutorials that i tried didn't work or are outdated.
    Thanks

    Hi Drew,
    It probably depends on the router as to the method used to open the ports.
    As I have said elsewhere in the thread the first 1024 ports are open in most router to allow things to work Out of the Box such as Mail (110, 25, 567, 569, 995, 996 and many more ) and web Browsing (port 80 mostly but secure site can use 443) FTP (21 and 22) to name some.
    Port Forwarding is one way to open some of the ports for One IP (computer).
    Most routers have  table for doing this and this can be limited as to the number of ports included.
    This Linksys pic shows how to do it for some as it allows groups based on Start and end ports. However it restricts it to one IP
    DMZ is a form of Extreme Port Forwarding that opens all 65535 ports to one IP (Computer)
    In both the above cases other computers (IP addresses) are excluded from using the ports.
    Port Triggering doe allow multiple computers to access the same Port but requires that you know the lead  - Trigger - port involved for each app.
    It is limited by the table size for your particular router.
    Same Router in Trigger ports for iChat 3
    Most router come with UPnP nowadays.
    It is an ON/Off setting that allows the apps on the computer to say which ports are needed and when.
    On some you can reduce the time to live  and the Hop amounts.
    The ports stay open from a period of normally 30 mins after non use.
    This can be changed.
    It also tends to list the number of Hops (the number of devices beyond the UPnP device) that it can be heard.
    My Sky Hub
    I have no other router on my network but I do sometimes use Internet Sharing between two computers hence the 2 Hops.
    Every other device is only one Hop away from the the router.
    There are concerns that the "Advertisement" is seen upstream (internet side) as well as device downstream.
    The Concern is that this could be Up to your ISP and then down to the "next" IP end user on the particular router/server at the ISP end.
    I have seen no evidence of this being the case.
    Hope this helps.
    8:45 pm      Monday; May 5, 2014
    ​  iMac 2.5Ghz i5 2011 (Mavericks 10.9)
     G4/1GhzDual MDD (Leopard 10.5.8)
     MacBookPro 2Gb (Snow Leopard 10.6.8)
     Mac OS X (10.6.8),
     Couple of iPhones and an iPad

  • Can we run a site both on port 80 and 443

    Running Lion Server 10.7.2 on a Mac Pro
    A custom web site runs fine on port 80.  When we set up the same site to also be able to run on port 443 we ran into trouble.  Server.app shows the default machine web site and our two versions of the site on port 80 and 443.  After the 443 site was added and a certificate selected for it, no web pages are being served.
    We want our web site to run on 80 and as required 443.  This was easy to set up in Server Admin on 10.6.X
    Any suggestions?
    Thanks - Erich

    John,
    Thank you for looking at this.  It seemed odd to me during development that so many features in the GUI had dissappeared.  I hoped that, like some other options, they had just been moved.
    I have no trouble with simplification of some features to allow a larger number of users to access the technology but it doesn't make sense that the features be removed outright when they were there in the past and previous users were taking advantage of the ease in setup.  I am curious what the decision making process was like on this.
    I'll take a look at Webmin and let you know how it goes.
    -Erich

  • How to open ports 80 and 443

    How do you open ports 80 and 443?  I'm trying to connect a tv to the internet.

    What router are you using? Who is your ISP? Also, what exactly are you trying to accomplish?

  • RV042 opens ports 80 and 443 when HTTPS enabled in firewall

    I recently installed an RV042 v1.1 vpn router (older hardware revision but using the latest available firmware 1.3.12.19-tm) and set up VPN access with the QuickVPN client.  QuickVPN requires that the HTTPS setting be enabled under the Firewall options, so I did.  I then scanned our static IP with grc.com's ShieldsUP! to check for open or non-stealthed ports and discovered that ports 80 and 443 show as wide open, while port 113 is closed but not stealthed.  If I disable the HTTPS setting under Firewall, then ports 80 and 443 become stealthed.  Is there any way to use QuickVPN and keep these ports stealthed?
    Thank you!
    Tim

    Solved this by forwarding ports 80, 113 and 443 to an unused internal IP address.  Tested QuickVPN after doing this and am still able to log on AND have a full stealth rating from ShieldsUP!

  • Warning found on port https (443/tcp)  using Nessus 2.0.0

    We are doing some security checking on our servers and found out that our secure website which runnning on iPlanet-WebServer-Enterprise/4.1SP9 gives us the following information.
    Warning found on port https (443/tcp)
    The SSLv2 server offers 4 strong ciphers, but also 0 medium strength and 2 weak "export class" ciphers. The weak/medium ciphers may be chosen by an export-grade or badly configured client software. They only offer a limited protection against a brute force attack.
    Can anyone explain what does it mean with "The weak/medium ciphers may be chosen by an export-grade or badly configured client software.". Is it not secure for us to use the export version of iPlanet Webserver or is there a way to make it secure ? Or is it OK for us to keep on using the current iPlanet webserver.
    Regards,

    During the SSL handshake the client and server will identify their supported ciphers. Since you have the "weak/export" ciphers enabled a client could specify that it will only accept these low grade ciphers and thereby negotiate something that is more easily hacked than something with stronger ciphers.
    If you disable the "weak" ciphers then the server will refuse to accept connections from clients that don't support the stronger ciphers.

  • CSS11501 - URL Redirect for Multiple Servers For Both Ports 80 & 443

    Can the CSS rules be configured such that it can be used to direct requests to different Web servers based upon,
    URL path? 
    For Both Ports 80 & 443/HTTPS (with SSL Certificate running on the back-end servers)
    For example:
    http://app.ti.com/path1/file.html goes to Web servers A & B -> old servers
    https://app.ti.com/path1/file.html goes to Web servers A & B -> "
    http://app.ti.com/path2/file.html goes to Web servers C & D -> new servers
    https://app.ti.com/path2/file.html goes to Web servers C & D -> "
    We're trying to understand what are plans are for a phased migration from old site to new site, and if it requires new URLs ???
    Fort port 443, since the CSS is load balancing SSL encrypted traffic, is the means that the CSS can’t look at URL thus this is not possible?
    Please help, thanks.

    Hi Martin,
    1) Clients are using http://domain/, thus I need to define url "//domain/.." as you have stated.
    2) I'm still waiting for the "actual" URL paths from the application team in order to decide which method to use - Regexp vs URLQ definition - to begin testing.
    I know I have limited memory resource (as listed below) & will try not to make it complicated:
    System Resources for CSS501-SCM-INT:
    Installed Memory:   268,435,456 (256 MB)
    Free Memory:        135,414,448 (129 MB)  ****
    CPU:                0% (5Sec)     1% (1Min)     0% (5Min)
    Buffer Statistics:
    Buffer Pool: 0
       Size:2048  Total:3072  Available:2792  Failures:  0  Low Buffer Count: 2748
    Buffer Pool: 1
       Size:2048  Total:3072  Available:2800  Failures:  0  Low Buffer Count: 2800
    Buffer Pool: 2
       Size:2048  Total:2048  Available:1956  Failures:  0  Low Buffer Count: 1900
    Thanks Martin, you've been a big help!
    Diane Ly  

  • Discoverer Plus Firewall only 80 and 443

    Hello, I'll try to be as clear as possible:
    My platform software:
    Windows 2000
    9ias 1.0.2.2.2.
    Portal 3.0.9.8.4
    Discoverer 4i.
    I only have access to ports 80 and 443.
    I've read that the only way to get Disco Plus to work without opening up a specific port is to load the Gateway software onto a different machine.
    I'm trying to get Visibroker Gateway software to run on a different machine than the http machine.
    Has anybody ever done this in the past? If so, can you please give me step by step on how to do it.

    Solved this by forwarding ports 80, 113 and 443 to an unused internal IP address.  Tested QuickVPN after doing this and am still able to log on AND have a full stealth rating from ShieldsUP!

  • RV042 - How to close all ports and leave some specific open

    Hello everybody,
    Here is the scenario of my network:
    - A company with 20 branches in Rio de Janeiro area. The main servers are in a datacenter located in downtown.
    Each branch has a RV042 router with firmware version 1.3.12.19-tm (Feb 13 2009 13:03:21) installed.
    All users in this network have a proxy configuration pointing to proxy.[blah].com.br port 3128.
    The HTTP/HTTPS traffic should go through proxy only.
    The network settings for every RV042 are similar:
    RV042 LAN IP = 172.16.***.1 /24.
    RV042 WAN IP = 192.***.***.*** /30.
    Network Setting Status
    LAN IP: 172.16.***.1 /24
    WAN1 IP: 192.168.***.*** /30               
    WAN2 IP: Not used
    Mode: Router
    DNS(WAN1): 208.67.220.220 / 208.67.222.222 [OpenDNS Service]
    DNS(WAN2): Not used
    Firewall Setting Status
    SPI (Stateful Packet Inspection): On
    DoS (Denial of Service): On
    Block WAN Request: On
    Firewall -> Access Rules Section: Please see below
    The problem:
    - Some "smart" users were caught using Ultrasurf application, which changes the proxy settings to go through port 9666 or even 443.
    In other machines, we've found some black proxies [for example: 212.46.27.142 port 8080].
    My objective:
    - To close all ports in Firewall -> Access Rules section and grant permission only to some selected and specified ports.
    - To redirect all HTTP/HTTPS connections to go to proxy's IP address only.
    Gentlemen, could you please tell me which Access Rules can I set in these RV042s in order to block and prevent these users to continue abusing this network? Is there anything else am I missing?
    P.S.: The users who were caught using Ultrasurf were fired. ;-)
    I gladly appreciate your comments.
    Thanks in advance,
    Luciano

    Hello Randy,
    Thanks for your answer. But let me tell you better. In this scenario, all machines in LAN can use RDP and VNC normally.
    I want to block everything else, just to avoid users to try using other ports.
    You might want to try Deny all traffic out, except for the PC's you need  to use RDP, and then only allow 80, and 443 to the proxy.[blah].com.br  port 3128. This way all web traffic would have to pass through that  proxy, otherwise it would be denied.
    In this network, we use VNC to provide remote IT support to users in these branches.
    They use RDP to access some servers in the datacenter.
    I think that the rule below line 6 is letting users go and traverse the proxy.
    Priority    Policy Name    Enable    Action    Service        Source Iface    Source    Destination        Time    Day
    *                                                  Allow    All Traffic [1]             LAN     Any        Any                  Always    
    How can I modify this access rule? It seems it cannot be altered.
    Thanks in advance,
    Luciano

  • Why would the Firewire Port and/or External DVD-RW suddenly not work?

    Hi, it's me again. I swear, I must be destined to just use Windows machines...
    Anyways, I have a used/refurbished iBook G3 500MHz 320MB RAM Dual USB (1 Firewire)laptop running OS 10.2.8 that I bought a few months ago. I went and purchased an external Firewire/USB 2.0 DVD-RW drive as I only had a CD-ROM drive on my machine and I wanted the option to burn CD's or watch/read data from DVD's (I know that with my slow processor writing DVD's -other than data- would be a stretch and have other machines to do that with anyways so it wasn't a concern really). I received it and installed it, also installed the free version of Toast that came with it, and the drive worked fine. I have not needed to use the drive since then and have not used the laptop much at all since then really, but I do need to say that I did end up adding a new user account, though I can't remember if I changed the original Admin account and then still have the one I created myself when I first started the laptop after I bought it (had a fresh install of Jaguar on it, but I have no disk to re-install with if needed) or if I created a separate (new) account and ended up deleting the Original Admin accout (I know in Windows, you cannot delete the original Admin account but I do not know if that is the same for OSX or not). I did this as I wanted a master Admin account that I just wouldn't really use and then wanted the other as my main account (and use it to connect to my home windows network) and for some reason it would not let me put a check in the box to allow that account to do so (from either Apple or my user accounts) and so I know that my main user account now is set up to allow it (was it the old Apple user account or a new one, I can't remember- sorry).
    Ok, so that is the back story to my problem, which happens to be this:
    I just bought a new chip of RAM (512MB to make it a machine with 576MB RAM total) and as I had been looking at getting OSX Tiger (but didn't want to do it without the extra ram and had been considering Panther instead as well), I thought it was necessary if I wanted to not bog down my machine. I bought the Install Disks on DVD for Panther, as well as an upgrade disk (DVD again) for Tiger, therefore letting me use the External Firewire DVD-RW to install Panther, and if I liked I could go ahead and upgrade to Tiger (and if I didn't like it too much, or it slowed things down too much etc, then I could always go back to panther and have both available for future options). The extra RAM coming in handy here definitely.
    So I was going to install the RAM today, and decided to go ahead and test out the External DVD to make sure it could boot from it (before making any changes to my system) and then go and install the RAM, and after that, install Panther to start... But I plugged all the cords and cables in, used my laptop with AC power even, and I could not get the External to show up at all... (kinda like the very current post right below mine but for the G4- it worked before, but now the firewire External just does not show up).
    I only have USB 1.1 on this laptop obviously, and I don't even know if you could do a boot from an external with USB 2.0 if my laptop had it (the DVD player does). I was recommended to boot with an external firewire DVD or firewire to another machine with DVD capabilities to do the install. So my problem right now is getting slightly bigger, as of course, I can't seem to momentarily find the stuff that came with the External (spare USB cable to check and see if the laptop will recognize it at least with that and to show it is the firewire that is not working properly, or the disk that I used to install it -might have been only used to install Toast free version if it didn't need any drivers, but I don't know where that or the instructions for installation sheet currently is -- I am looking for it, but I have switched bedrooms just last week and I also seem to be missing a few other Windows laptop disks as well so there is a good chance that they are all together, I just need to figure out where, heh.)
    I am waiting currently before installing the memory, though if I don't get the External working tonight, I may go ahead and do it first as at least I will have more memory on my laptop then, until I can get other stuff functioning and be able to do the Panther install.
    But my main question is, is there something that would cause an installed external to suddenly not show up in OSX? Since I hadn't used it since that one day, and it was unplugged from the laptop itself, would that end up doing it, or more likely, the changing of the user accounts (though I have been trying to test it with different types of media and through both of my user account (which are both "admin" ones), though I do still have one of those being an account that was on there when the External DVD was first installed, so it really shouldn't have done this at all (one would think). So how big of a chance is it that the firewire has somehow gone dead and this is the main culprit to my wasting the past 4 hours on this???
    I am currently scavenging around for an extra USB cable to try and test the External that way and will post the results when I can... I love the look and idea of macs, now I have a mac and want to upgrade it even, but why is it that whenever I attempt to use it after having not used it for a bit (and try to make the iBook feel better by using it more as I am sure it feels sad and alone sitting on the shelf while my Windows Laptop gets more attention), or try to fix it when it can be made better (and therefore used more often), the mac (all macs really), just seem to get all pissy and cause problems and make me spend hours upon hours trying to get things to work again??? You have to admit it, I am "mac cursed"... sigh I can program in 4 or 5 computer languages and am very advanced at many tech things (the ones I am not as good at I am still usually Average or Medium skilled) so it makes me wonder why I have so many tech problems with Macs when they are supposed to be the "easy" OS to use...

    Actually, I think I have it all working now. After going back to the Plextor Website, I found out that the switch between the USB and 1394 ports only gets activated (switched over to the other) with you turn the device off first, move the switch and then turn it back on. I was sure that I had done this with the ibook, but maybe not as when I went back and did it with first the USB and then the Firewire cables, it did work. I definitely knew that I had not done this with the Windows laptop, the reason it would not have the USB work for me on it.
    but back to the iBook, I was confused as it was only showing up as a DVD-ROM (which I guess is what they do until you actually open up the burning software to then be able to burn to it), and it also had the wrong Model #, which after more research, showed that it was the Internal DVD drive model version (PX-708A) compared to the actual model version (PX-708UF) which is the USB/Firewire (External) model. The firmware was really out of date as well (from June 2004 I think, v1.06) and they had v1.12 from Spet/Oct 2006 available so I went to get that (which was a hassle). They had nice easy Windows self extractor/installer packs, and then the BIN files for use for all systems (Sun OS/ Mac OSX/ Mac OS/ Linux etc as well as usable for Windows), and those needed a special Firmware Updater Application which was OS specific. Only I had the hardest time trying to get the OSX one as it would send me to a FTP site and not give me any clues as to which file(s) I needed to get and the Mac OS version was just for older 9.2 or below versions and didn't want to install under the OS Classic mode.
    I ended up using my windows computer which made it easier to view with the FTP stuff as I have FireFTP in Firefox, and downloaded the files I thought I needed (to test out), and then realized my silliness, and just downloaded (as well) the Windows Auto Extractor/Installer as the Firmware is the same for all OS's, just the way to install/update it was different... So I hooked the DVD drive to my PC and updated the firmware, checked it out on here before moving it back to the ibook, where I checked that it still worked and had the new update version showing, which it did, and now I have my fully working and newly updated drive ready for the OSX installations... I had attempted to update my Jaguar system as well while online, but it had no new updates available (I guess those were all mostly Tiger updates that were just recently released).
    I am now off to install my additional RAM, and after checking that it all shows up correctly, I will go ahead and do the Panther Install (and test it out and see if I like it or not).
    For anyone that currently uses Panther on any mac, are there still any major problems I should know about before hand, or know about things that they have mostly fixed (like the issues with Firewire ports and External Drives that they had around the time Panther was first released for example)???
    Thanks to all that helped... I now know to attempt an "eject" of any external HD (which I do have one that I will setup to use after I get Panther on the ibook) or CD/DVD drive instead of just unplugging the USB/Firewire cable.

Maybe you are looking for

  • HT2499 How do I play DVDs on my MacBook Pro?

    I just recently got a MacBook Pro and never having owned one before in my life, I put in a DVD thinking it would play and it didn't. A DVD icon showed up on my desktop so I clicked on it and all there was were folders, etc. I didn't know what to do a

  • Regarding curves IN abap REPORT

    hi experts, i got one assignment ,i have to show the graphical representaton of the output data in the abap report, i have to create  the bell curve on the basis of appraisal data which will come in the output how will i proceed for this plz help me

  • Desktop Software error MUSIC

    I have installed the newest version of the Blackberry Desktop SOftware on my laptop, the Music section has the error - Music Services failed to load. An unexpected error has occurred. Anyone have any ideas how to rectify this? Thanks ALJ

  • Copy template from company to company

    I have a PLD Template designed for one company.  I like to use the same for another company as it is.  I dont want to design a new template for the target company, just copy it and change the logo.  How can I send it from One company database to othe

  • Immediate CENVAT Utilization for a particular business process

    HI Friends, The Business requirement is that  a single Excise invoice number should be generated for the plant be it domestic or Export Transactions. So we have accordingly maintained a single series group. The client requires  immediate  utilization