What ports do I need to open to allow SecuRemote/Secure Client (4.1)

TCP port 264 (FireWall-1 4.1 and beyond) or TCP port 256 (FireWall-1 4.0 and earlier) between client and Management Console. This is only needed to fetch and update the site information and will always originate from the SecuRemote client.
TCP Port 18207 is used if Secure Client needs to authenticate with a policy server.
UDP port 259 to negotiate encryption and authentication information.
UDP port 500 to negotiate encryption keys when IKE is used.
UDP port 2746 when UDP Encapsulation is used.
IP Protocol 94 bi-directionally when FWZ encapsulation is used.
IP Protocol 50 bi-directionally when IKE is used.

09/OCT/02 Jim Parker

< back