TCP/IP Port 0

Hi everyone,
How can I block port 0 in BorderManager? When I tried I got a message that port 0 is invalid. Is there another way to block this port in BorderManager or another software?
Regards
Thembela

In article <[email protected]>, Tsonandi wrote:
> Because of the security assessment that was done in my company I was
> told that port 0 is open and I have to block it.
>
I've seen lots of 'security assessments' that are no more than some
canned program trying a whole bunch of sometimes meaningless tests. If
a company says that is a problem, they should also be able to explain
WHY it is a problem. I'm guessing they won't be able to in this case.
If you load TCPCON on the server and look at tcp connections, I don't
think you'll see anything listening on port 0 (I never have). Perhaps
this is some subtle bug with TCPIP that can be exploited, but I've not
heard of it.
Craig Johnson
Novell Support Connection SysOp
*** For a current patch list, tips, handy files and books on
BorderManager, go to http://www.craigjconsulting.com ***

Similar Messages

  • Can I use the second TCP / IP port on my cRIO to drive a meter Agilent

    I would like to use the second TCP / IP port of my NI cRIO-9024 to control my Agilent 33210A pulse generator with VISA TCP/IP.
    My Agilent has only TCP/IP and GPIB ports.
    Is it possible?
    cordially

    All the MACs (from my old 2006 PPC Mini) will auto detect ethernet crossover and straight through and rollover cables correctly. They should be Auto-MDIX.
    Having said that, the FW800 (via TB) and Ethernet should be very close in terms of performance.

  • How to free tcp/ip port in Mac OS X v10.6 Snow Leopard

    weeks ago i installed graboid on my imac and it's having trouble downloading files. this is what appears whenever i open graboid:
    +SABnzbd.py 0.4.6 failed to start.+
    +The Graboid Download Manager needs a free tcp/ip port for its internal web service.+
    +Port 11234 on localhost was tried , but it is not available.+
    +Please ensure that your firewall grants access to GraboidDLManager.exe and port 11234 and 119 aren't blocked.+
    +Some other software may be using the port or the download manager is already running.+
    +Please verify that another instance of the download manager is not already running. To do this, press CTRLShiftEsc or open your task manager. Make sure the Processes tab is selected and look for "GraboidDLManager.exe" in the list. If it is there, click on it and then press the "End Process" button. After that, please restart Graboid.+
    +Open a Terminal window and type the line (example):+
    +/Applications/SABnzbd.app/Contents/Resources/SABnzbd.py --server localhost:11235+
    +Open a Terminal window and type the line (example):+
    +/Applications/SABnzbd.app/Contents/Resources/SABnzbd.py --server localhost:11235+
    "/>
    how do i free a port in snow leopard? i already allowed incoming connections from graboid in my security preferences but still it wouldn't work. help please. thanks

    Do you use a router to connect to the internet? If so the port needs to be mapped to your local machine.

  • Which TCP/IP ports do I have to open in order to get communication

    I have an enterprise portal. based on EHP1 and I want to patch it. So I need to connect it to Solution manager.
    However systems are in different networks.
    I wander which TCP/IP ports do I have to open in order to get communication between the two systems.
    I am trying to fid documentation for this case but every documentation asumes systems are in same network

    It's fascinating that that document hasn't been replaced/updated in five years.  Regardless, I've noticed an inconsistency in how they list the needed ports. 
    For example, they mention that port 5nn13 is needed for (I think) the Netweaver Start Service, and mention that the nn should be replaced with the instance number (00-99).  That's one hundred ports (50013, 50113, 50213, ... 59913).  Yet, in the "Range" column, they significantly mis-describe that as 50013-59913, which adds another 9801 completely unnecessary holes to put into a firewall.  (e.g. 50026, 51058, 53077, etc etc)
    They do that for most of the ranges they use that nn shorthand with... 5nn00, 5nn01, 5nn14, 5nn16, etc.
    In short, following the description they give in the "Range" column will have one opening thousands upon thousands of unnecessary holes in the firewall.

  • TCP/UDP Ports and site used by FEP to download updates - needed to allow on perimeter firewall

    Can some one point me with information like what TCP/UDP ports are utilized by FEP and what DNS / site Name it uses to download FEP Updates. This is needed to tighten perimeter FireWall policies
    Thank you

    It should be the same as the documentation for all Software Updates:
    https://technet.microsoft.com/en-us/library/bcf8ed65-3bea-4bec-8bc5-22d9e54f5a6d#BKMK_ConfigureFirewalls
    Make sure to expand the "restrict access to specific domains" section to see the update related URLs.

  • DirectAccess - TCP open port not reachable

    Hello,
    I did a little experiment with my DirectAccess connectivity.
    I have a laptop with DirectAccess connectivity enabled with my domain username.
    I logged in to my laptop with my local administrator account. Thus, DirectAccess mounts the IPSec ESP tunnel infrastructure and it is possible to querry DNS requests to my Intranet (even if I'm not authenticated with my domain account).
    I realize I was able to netcat to the web servers (and more generally, to use netcat to connect to any TCP opened ports on the intranet). Here there are two things I do not understand.
    - I know there are two DA servers in a DMZ. I guess the fact I am able to netcat where I want on the Intranet is due to a lack of firewalling. But is it, or is it just a consequence of the way DA works?
    - Then, when seeing I could netcat to open ports, I tried to connect to the web server with my browser, but the connection timeout. I thought it was strange. I should mention that when querrying the web server with a GET request in netcat, I only receives
    HTTP headers qith a body length of 0. However, I do not understand why the browser querry timeout, and not the netcat one.
    Thank you!

    Hi
    When you log on your laptop with your local administrator account, this account cannot be used for the user IPSEC tunnel. So you only have the IPSEC infrastructure tunnel established by your laptop. With this tunnel, you have access to all ressources declared
    as allowed in the infrastructure tunnel.
    BenoitS - Simple by Design http://danstoncloud.com/blogs/simplebydesign/default.aspx

  • Not receiving all data across tcp/ip port

    Hi,
    i am trying to transfer data across a tcp/ip port.  the data is in binary and is reliable when small amounts of data is passed.  it starts to fail when i try to transfer around 10000 bits and it is random(sometimes i get more or lest data when requesting the same amount).  any advice on what to do.  i attached the vi so you could see the code but it won't run unless you edit the ip and port to work with your settings.
    thanks
    Attachments:
    TCPsavetest1.vi ‏56 KB

    Hi,
    Here is a Developer Zone article that explains more about TCP communication. Is your code set up similar to these examples? Are you able to run a TCP example from the LabVIEW Example Finder?
    Amanda Howard
    Americas Services and Support Recruiting Manager
    National Instruments

  • Need solution for solving TIME_WAIT in TCP/IP ports in Windows Server 2008 Standard Service Pack 2

    In one of our windows machine( OS : Windows Server 2008 Standard (Service Pack 2)-32bit), we are facing TIME_WAIT in all the TCP/IP ports and it is not getting closed.
    On analyzing the issue, we found solution for this from the below link,
    https://support.microsoft.com/en-us/kb/2553549
    In this page, we are able to get the hotfix for Windows Server2008 R2 SP1 but i can't able to get for  Windows Server 2008 Standard SP2(32bit). If we try to apply the hotfix vailable for SP1, it is showing "The update does not apply to your System".
    Kindly provide us the solution for solving TIME_WAIT issue in the machine. 
    OS Details : Microsoft Windows Server 2008 Standard
    Version : 6.0.6002 SP2 Build 6002
    System Type : 32 bit(x86-based PC)
    Awaiting for the response.
    Thank you,
    Pushpalatha.A

    Download correct version from Microsoft Update Catalog. Run it with elevated rights.
    M.

  • Should I block TCP/UDP ports 135 to 139 on my router?

    For the sake of Internet and Desktop security should I block TCP/UDP ports 135 to 139 both ways at all times on my router?  This seems to be recommended for Windows environments. Does Mavericks need these ports for its proper operation?  When tested, ports 135, 137,18 show as closed whereas all other ports are Stealth.  Ideally, they should all be Stealth.

    Have a read here: http://securityspread.com/2013/07/26/firewall/
    Stealth is just as good as closed, some would argue that stealth is just as much of a giveaway of the port being present as it being closed.
    The specific ports you mention pose no risk to OS X as far as I am aware.

  • ACE: Can I loadbalance based on client Source IP/and client tcp source port?

    We recently migrated serving a client from being thick client at the desktop to being served via a citrix farm.  Prior to the migration the clients came from about 5000 unique source IP's to their VIP, now they come from only 31 unique source IP's from the citrix servers in the farm. A citrix server can host 400 client sessions, since the default action of the ACE is to loadbalance based on source IP's, the ACE is sending up to 400 sessions from one citrix server to 1 real server in the farm.  Is there anyway I can loadbalance based on client source IP and tcp source port so the ACE views the 400 sessions from one citrix server as unique sessions?  The application does not require persistence.

    Hello,
    Yes, you can configure a "Sticky Layer 4 Payload" as descirbed on this Link:
    http://www.cisco.com/en/US/docs/interfaces_modules/services_modules/ace/vA2_3_0/command/reference/sticky.html#wp1039276
    Unfrotunately I do not have any working example. You must calculate the right values for the Offset and the Length to configure.
    Regards Jean-Marc

  • How to interface instruments through TCP/IP port

    I want to connect an instrument ( which has RS-232 port ) to a Computer Ethernet port through an Ethernet to RS-232/485 Converter. In past I had successfully made many GUI with Java-2 swing to interface instruments via serial ports (COM-1, COM-2 etc.). This time I am interested to do the same thing but through TCP/IP port programming in Java-2 application.
    Please suggest me websites/java tutorial sites where I may get guide line, advice and sample example programmes.
    Avijit

    a_das wrote:
    I want to connect an instrument ( which has RS-232 port ) to a Computer Ethernet port through an Ethernet to RS-232/485 Converter. Ok.
    In past I had successfully made many GUI with Java-2 swing to interface instruments via serial ports (COM-1, COM-2 etc.). This time I am interested to do the same thing but through TCP/IP port programming in Java-2 application.So you first need to understand the protocol of what the converter does. Until you understand this then coding in java is pointless.
    Then you use sockets. There isn't any magic for that part.
    [http://java.sun.com/docs/books/tutorial/networking/index.html]

  • Post Data to TCP/IP Port.

    What is the best way to post data to an TCP/IP Port.

    If I understand you right, try sockets. You can write there as to usual Input\Output Stream.

  • Does iCould use special TCP/IP ports?

    Hello,
    I routinely use iCloud to share iWork documents between my MacBook Pro and my iOS devices. But somehow, I cannot access these documents from the iWork apps on my office iMac (runs Mountain Lion). Could someone suggest a probable reason? (iCloud-based calendar, notes, reminders sync alright.)
    Could this be because iCloud uses non-standard TCP/IP ports, most of which are blocked by my organization’s systems administrator? I could not find anything suggesting that on Apple’s web site. 
    Thanks,
    Girish.

    Yep, both of them are blocked. So that’s the answer then. I wish there were iCloud documentation somewhere with this piece of information.

  • TCP IP port

    hello, i use filemaker pro and... after the installation filemaker server it's impossible to web publisher why the system find a conflict of a tcp ip port. what's can i do? thanks

    In article <[email protected]>, Tsonandi wrote:
    > Because of the security assessment that was done in my company I was
    > told that port 0 is open and I have to block it.
    >
    I've seen lots of 'security assessments' that are no more than some
    canned program trying a whole bunch of sometimes meaningless tests. If
    a company says that is a problem, they should also be able to explain
    WHY it is a problem. I'm guessing they won't be able to in this case.
    If you load TCPCON on the server and look at tcp connections, I don't
    think you'll see anything listening on port 0 (I never have). Perhaps
    this is some subtle bug with TCPIP that can be exploited, but I've not
    heard of it.
    Craig Johnson
    Novell Support Connection SysOp
    *** For a current patch list, tips, handy files and books on
    BorderManager, go to http://www.craigjconsulting.com ***

  • Which oracle table stores the TCP/IP port for a database sid?

    Hi Experts,
    There is a way to get the host name and host address of a database.
    SQL> select utl_inaddr.get_host_address from dual;
    GET_HOST_ADDRESS
    10.xxx.xxx.xxx
    SQL> select DB_UNIQUE_NAME from v$database;
    DB_UNIQUE_NAME
    mydb
    Is there any similar way to know the TCP/IP port of the database instance?
    Thanks in advance for your help.

    Ora User wrote:
    Hi Experts,
    Thanks for your responses.
    Actually i am trying to create JDBC connection pool in weblogic using the oracle thin driver.
    dbURL = "jdbc:oracle:thin:@"+hostip+":1521:"+dbSID;
    I am getting the hostip and dbsid information from the database table but not getting the port information. Another way is to use the tnsentry usning the tnsnames.ora but it would not be possible in my case as these pools will be created in the weblogic during the deployment and dont have the tns information on the weblogic server.
    Regards
    Ora UserWell, you can't get information from the database without being connected to it. Therefor it is not logical to try to get the database to give you the information needed to connect to it. That's like trying to call someone on the phone to ask them their phone number. The only reliable way to get the info is to ask the listener: lsnrctl status

  • C009: Gateway Name Server TCP/IP Port has to be a numeric input

    Hi!
    I am installing a new Siebel Enterprise Server 8.1.1 on WinXP with FastTrack.
    I´m in the step of Server Configuration.
    After I have put the user SADMIN I have got the error:
    "C009: Gateway name Server TCP/IP Port has to be a numeric input".
    In the C:\sba81\ses\siebsrvr\LOG\sw_cfg_util.log I have found following:
    GenericLog     GenericError     1     000000024ac004bc:0     2009-09-28 22:29:41     Error in TransferInputValues - # of controls being sent incorrect...
    GenericLog     GenericError     1     000000024ac004bc:0     2009-09-28 22:29:41     TransferInputsToValues returned error:3611539 to SetControlValues
    GenericLog     GenericError     1     000000034ac004bc:0     2009-09-28 22:29:51     Validation failed : C009: Gateway Name Server TCP/IP Port has to be a numeric input
    GenericLog     GenericError     1     000000034ac004bc:0     2009-09-28 22:29:51     ValidateFailed for Gateway Name Server TCP/IP Port, error : C009: Gateway Name Server TCP/IP Port has to be a numeric input
    Please help me!
    How I can fix it?
    Vadim Lyulin.

    Oracle is running on a box somewhere.
    Somehow you can contact that box. You should be able to ping it using the 'ip' or a 'dns host name'.
    You use that for the host name.
    I would suggest that you use sqlplus to connect to the database first to verify that it is running, the listeners are running, that the SID is correct, that the user/pwd is correct. If you can't get sqlplus to connect to it then java never will.
    Once you do that then try it in java.

Maybe you are looking for

  • Can no longer read plist files

    I've got a script that iterates through a list of hostnames, connects to each host, looks for the existence of a list of applications, and if they exist reads their Info.plist for the version.  This worked seamlessly until a couple of days ago.  The

  • Generate Goods Receipt from PO IDoc

    Hi Gurus Please find my following requirement: 1. Legacy system generates data. Using PORDCR idoc we create Purchase orders in SAP. 2. After creating this PO, we need to generate Goods Receipts based on the data in the created IDoc. To create PO we h

  • Error in AXIS SOAP Adapter

    Hi Experts, Cuurently i am working on  Synchronous scenario. My scenario is ABAP Client Proxy> PI>AXIS SOAP ADAPTER(Webservice). My client requirement is to use UsernameToken security with PasswordDigest. I have deployed all the relevant .jar files a

  • BAPI Meta-data calls

    Hi, I would like to do the following from an RFC Client application: - 1)       For a given RFC call, extract the meta-data relating to import and export tables and parameters and also the underlying structures 2)       For a given business object ca

  • Snapshot Query

    Is there any way to speed up the process of getting Snap Shot Query information to match what is in the KD after a crawler has run? It takes about 15 minutest to see a change otherwise. I cannot find any job intrinsically for SnapShot Queries. Thanks