Welcome to ISAserver.org

Forums | Register | Login | My Profile | Inbox | RSS RSS icon | My Subscription | My Forums | Address Book | Member List | Search | FAQ | Ticket List | Log Out

When to add an App to FW Client config?

Users viewing this topic: none

Logged in as: Guest
  Printable Version
All Forums >> [ISA Server 2000 Firewall] >> Firewall Client >> When to add an App to FW Client config? Page: [1]
Login
Message << Older Topic   Newer Topic >>
When to add an App to FW Client config? - 7.Nov.2002 11:04:00 AM   
wi11iam

 

Posts: 173
Joined: 29.May2002
From: Middelburg, South Africa
Status: offline
Hi there

I havet he FW Client installed on my workstations with the necessary Protocl Rules and Site&Content rules already in place for all the funny little applications that I wish to allow through the ISA Firewall.

What I cannot seem to understand though is that why do some applications require an entry into the FW Client Config (via the MMC) to set DISABLE=0, and then some other applications work fine without any hassles at all.

For example, Jim Harrison's WINSOCKTOOL.EXE and Reuters News Agency's KOBRA.EXE work fine without having any special sections added to the MSPCLNT.INI.

But applications such as Windows Messenger (MSMSGS.EXE), SAP/R3 (SAPGUI.EXE) and ICQ.EXE all need an entry in the MSPCLNT.INI saying DISABLE=0.

Can anyone perhaps tell me why some applications need to be specifically GRANTED access (DISABLE=0) and other applications can just work withtou any addition to the MSPCLNT.INI at all?

Cheers
William R.
Post #: 1
RE: When to add an App to FW Client config? - 7.Nov.2002 4:01:00 PM   
tshinder

 

Posts: 47669
Joined: 10.Jan.2001
From: Texas
Status: online
Hi William,

ICQ and Messenger don't require an entry, although you can add one if you like. No application requires an entry in the file that I know of, unless you have special requirements that need to be addresses in the mspclnt.ini file.

HTH,
Tom

(in reply to wi11iam)
Post #: 2
RE: When to add an App to FW Client config? - 8.Nov.2002 6:27:00 AM   
wi11iam

 

Posts: 173
Joined: 29.May2002
From: Middelburg, South Africa
Status: offline
Hi Tom

You can understand then where my confusion comes in. Whenever I try to test a new application and it fails, I then go and add the following to the FW Client Config:

[AppName]
Disable=0

And then 9 times out of 10 the application starts to work fine. I am not adding any funny rules like ServerBindTCPPorts etc, I am only adding the DISABLE=0 line so that the FW Client will permit the traffic through to the ISA Server.

Cheers
William R.

(in reply to wi11iam)
Post #: 3
RE: When to add an App to FW Client config? - 8.Nov.2002 4:40:00 PM   
tshinder

 

Posts: 47669
Joined: 10.Jan.2001
From: Texas
Status: online
Hi William,

I wish that were true. If it were that easy, no malware, worms or viruses would be able to connect to the Internet via Firewall client computers [Big Grin]

HTH,
Tom

(in reply to wi11iam)
Post #: 4

Page:   [1] << Older Topic    Newer Topic >>
All Forums >> [ISA Server 2000 Firewall] >> Firewall Client >> When to add an App to FW Client config? Page: [1]
Jump to:

New Messages No New Messages
Hot Topic w/ New Messages Hot Topic w/o New Messages
Locked w/ New Messages Locked w/o New Messages
 Post New Thread
 Reply to Message
 Post New Poll
 Submit Vote
 Delete My Own Post
 Delete My Own Thread
 Rate Posts