Firewall-1

Re: [FW-1] Urgent help: Changing SmartDashboard from using tcp port 1819

Subject: Re: [FW-1] Urgent help: Changing SmartDashboard from using tcp port 18190 to something else
From: cisco4ng <cisco4ng AT YAHOO DOT COM>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Mon, 29 May 2006 11:59:53 -0700
Mark,
  Here is my scenario:
   
  1) I only have 1 public IP address and that public IP address in on the Cisco 
2621 
  router (129.174.1.8)
   
  2) My Provider-1 looks like this:
   
  Provider-1 IP:  192.168.1.129
  CMA-1: 192.168.1.130
  CMA-2: 192.168.1.131
  CMA-3: 192.168.1.132
   
  On my cisco router, I have this:
   
  ip nat inside source static udp 192.168.1.129 18190 interface F0/0 18190
  ip nat inside source static udp 192.168.1.130 18190 interface F0/0 18290
  ip nat inside source static udp 192.168.1.131 18190 interface F0/0 18390
  ip nat inside source static udp 192.168.1.132 18190 interface F0/0 18490

Now from the Internet, I can connect to Provider-1 via MDG just fine.  but in
  order to connect to CMA-1, I have to, somehow, use port 18290 to make it
  happen.  Well, with microsoft windows Remote Desktop, I am allowed to use
  x.x.x.x:18190 if I want to use remote desktop.  I would think that the 
Smartconsole
  client would let me do that as well.
   
  Any comments?  Thanks
  cisco4ng

Mark Senior <Mark.Senior AT GOV.AB DOT CA> wrote:
  Have you tried the facilities in the client OS for port forwarding?

If it's windows (I guess it has be be for the GUI to run)

netsh interface portproxy add v4tov4 listenport=18190 
connectaddress=(yourciscorouter) connectport=(somerandomport) protocol=tcp

Then you could connect to 18190 on 127.0.0.1, the connection would be forwarded 
to the random port on the cisco router, and then on to 18190 on the 
smartconsole.

Yes, it's quite ugly, but your configuration sounds somewhat kludgy to start 
with. Anyway, I hope this helps

Regards
Mark


-----Original Message-----
From: Mailing list for discussion of Firewall-1 [mailto:FW-1-MAILINGLIST AT 
AMADEUS.US.CHECKPOINT DOT COM] On Behalf Of cisco4ng
Sent: 26 May, 2006 06:59
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Subject: [FW-1] Urgent help: Changing SmartDashboard from using tcp port 18190 
to something else

Hi Guys,

Is it possible to change the TCP port of the GUI in the Provider-1 MDG or
SmartDashboard and Tracker to use other tcp port instead of the default
tcp 18190 port (CPMI)? Is there something in the registry setting in windows
that the GUI run on that I can do to make it happen? 

The reason I want to do it is my Provider-1 sit behind a Cisco router and
I am doing redirect on the router to get to my Provider-1 via MDG. The
MDG works fine but I can not redirect the same port twice on the Cisco router
or Cisco Pix for that matter. With Windows Remote desktop I can redirect
port 3390 to tcp 3389 by typing the command 129.174.1.13:3390.

Is it possible with either MDG or SmartDashboard. Thanks a lot for your help.

cisco4ng


---------------------------------
Yahoo! Messenger with Voice. PC-to-Phone calls for ridiculously low rates.

---------------------------------
Love cheap thrills? Enjoy PC-to-Phone calls to 30+ countries for just 2¢/min 
with Yahoo! Messenger with Voice.

=================================================
To set vacation, Out-Of-Office, or away messages, send an email to LISTSERV AT 
amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your subscription options, email 
fw-1-owner AT ts.checkpoint DOT com 
=================================================

This email and any files transmitted with it are confidential and intended 
solely for the use of the individual or entity to whom they are addressed. If 
you have received this email in error please notify the system manager. This 
message contains confidential information and is intended only for the 
individual named. If you are not the named addressee you should not 
disseminate, distribute or copy this e-mail.

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================


                
---------------------------------
How low will we go? Check out Yahoo! Messenger?s low  PC-to-Phone call rates.
                        
---------------------------------
Sneak preview the  all-new Yahoo.com. It's not radically different. Just 
radically better. 

=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>