Error » Error News and Info » Knowledge Base » OWA on SBS 2003 - you just need port 443?

Knowledge Base Most common error and how to trouble shoot them off

Post New Thread Reply
  OWA on SBS 2003 - you just need port 443?
LinkBack Thread Tools Display Modes
Old 22-May-2007, 08:38 AM   #1 (permalink)
Fixed Error!
 
driverdownloads's Avatar

Posts: 1,672
Join Date: Mar 2007
Rep Power: 3 driverdownloads is on a distinguished road

IM:
Default OWA on SBS 2003 - you just need port 443?

I am working with SBS 2003 in my lab. I want to double check my notes with you guys. While on the one hand I found these lists of ports to open on your router for incoming connections to the SBS box:

SMTP 25 - Simple Mail Transfer Protocol
HTTP 80 - Home Page Web
SSL 443 - Home Page Web Secured
RWW 444 - Second SSL Secured on alternate port
PPTP 1723 - VPN Connections
RDP 3389 - Remote Desktop Protocol
RWW2 4125 - Remote Web Workpla

Also add?:

21 FTP Enables external and internal file transfer
110 POP3 Enables Exchange to accept incoming POP3 mail
123 (UDP port) NTP Enables the system to synchronize time with an external Network Time Protocol (NTP) server
143 IMAP4 Enables Exchange to accept incoming IMAP4-compliant messages
220 IMAP3 Enables Exchange to accept incoming IMAP3-compliant messages
500 IPSec Enables external VPN connections by using IPSec
1701 L2TP clients Enables external L2TP VPN connections
4500 IPSec Internet Key Exchange (IKE) Network Address Translation (NAT) traversal

But at this point, learning slowly, I only want OWA... that seems to be working with just 443 open?! And while it's only a lab, the other steps I would want when we do this in a production server is a) get a paid certificate (not home grown) b) rename (disable?) administrator account and c) other users use complex passwords that expire every so often?
driverdownloads is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit!
Reply With Quote
   


   
Old 22-May-2007, 08:38 AM   #2 (permalink)
Fixed Error!
 
driverdownloads's Avatar

Posts: 1,672
Join Date: Mar 2007
Rep Power: 3 driverdownloads is on a distinguished road

IM:
Default Re: OWA on SBS 2003 - you just need port 443?

>>"OWA... that seems to be working with just 443 open?! "
Correct

>>"a) get a paid certificate (not home grown) "
Homegrown work fine, however if you have a paid certificate the users do not have to accept or install it, and it resolves a lot of issues with the newest mobile devices that will not readily accept certificates from unknown authorities

>>" b) rename (disable?) administrator account "
Though this is often a common practice with 2003 std, most will recommend against this with SBS. You could disable, but I don't believe you can rename it in SBS.
>>"c) other users use complex passwords that expire every so often?"
Absolutely. There is actually a wizard to do this; Server management | Users | Configure password Policies

as for your port list the first is bang on. The second list should not be necessary.
21 very risky on a SBS
110 POP exchange accounts are not set up as a rule
123 NTP service on SBS is an outgoing service, no need to allow
143, 220 Exchange/SBS does not use IMAP
500, 1701, 4500 chances are if you are using IPSec or IPSec over L2TP it will be an IPSec VPN and you will use a VPN router rather than the SBS
driverdownloads is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Spurl this Post!Reddit!
Reply With Quote
Post New Thread Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT -8. The time now is 07:30 AM.

Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Friendly URLs by vBSEO 3.2.0

DMCA Policy

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85 86 87 88 89 90 91 92 93 94 95 96 97 98 99 100 101 102 103 104 105 106 107 108 109 110 111 112 113 114 115 116 117 118 119 120 121 122 123 124 125 126 127 128 129 130 131 132 133 134 135 136 137 138 139 140 141 142 143 144 145 146 147 148 149 150 151 152 153 154 155 156 157 158 159 160 161 162 163 164 165 166 167 168 169 170 171 172 173 174 175 176 177 178 179 180 181 182 183 184 185 186 187 188 189 190 191 192 193 194 195 196 197 198 199 200 201 202 203 204 205 206 207 208 209 210 211 212 213 214 215 216 217 218 219 220 221 222 223 224 225 226 227