Knowledgebase

Firewall ports

Posted by Lost Eagle, 05-12-2011, 07:52 AM
Hi guys ... whats the basic ports for TCP and UDP should I allow on my server "Cpanel" plz, in-out TCP , UDP My Current: TCP_IN = 20,21,25,53,80,110,143,443,465,587,993,995,2077,2078,2082,2083,2086,2087,2095,2096,26 TCP_OUT = 20,21,25,37,43,53,110,113,443,587,873,2087 UDP_IN = 20,21,53 UDP_OUT = 20,21,53,113,123,873 ---------------- Note: I dont run any additional services + I know that I have to add my SSH port to TCP-IN - but: for the TCP-OUT should I enable any range ? - FireWall type: CSF

Posted by cptechie, 05-12-2011, 08:09 AM
Hello, You just need to add passive ftp port range also to the TCP_IN .

Posted by Lost Eagle, 05-12-2011, 08:15 AM
Do I need those: TCP_OUT = 20,21,25,37,43,53,110,113,443,587,873,2087 UDP_OUT = 20,21,53,113,123,873 as I know just 53 in TCP , UDP right ?

Posted by Lost Eagle, 05-12-2011, 08:33 AM
Why do some sites says I have to enable TCP-out for the range 30000:35000

Posted by stardust_x7, 05-12-2011, 08:34 AM
Also set pure-ftpd.conf range to 30000:50000 and add them on firewall ports.

Posted by Lost Eagle, 05-12-2011, 08:35 AM
cptechie, whats the passive port ?

Posted by cptechie, 05-12-2011, 08:40 AM
Hello, You can set this 30000:35000 as passive ports. Make sure this is also enabled int he ftp conf. Otherwise it will result in a warning while restarting csf and will cause issues with ftp.

Posted by stardust_x7, 05-12-2011, 08:42 AM
That should be 30000:50000 not 35000

Posted by cptechie, 05-12-2011, 08:45 AM
Hey Stardust, Be cool. Your suggestion is good. But open your csf.conf and see what they recommends.



Was this answer helpful?

Add to Favourites Add to Favourites

Print this Article Print this Article

Also Read
Limit BW/Speed (Views: 585)


Language:

Client Login

Email

Password

Remember Me

Search