Results 1 to 9 of 9

Thread: FWD all Wan traffic - Draytek router

  1. #1
    MacDaddy! darrensen's Avatar
    Join Date
    Apr 2005
    Location
    Sussex
    Posts
    1,695
    Thanks
    6
    Thanked
    43 times in 37 posts
    • darrensen's system
      • Motherboard:
      • Gigabyte z77 UD3H
      • CPU:
      • i7
      • Memory:
      • 8gb DDR3
      • Storage:
      • Loads!
      • Graphics card(s):
      • EVGA 780 GTX
      • PSU:
      • Corsair 850Watt
      • Case:
      • Coolermaster Storm Trooper
      • Operating System:
      • Win 7 64bit
      • Monitor(s):
      • Dell 24"
      • Internet:
      • Plusnet Fibre 80mb

    FWD all Wan traffic - Draytek router

    Hi all,

    Got a question regarding WAN traffic which requires forwarding to a server.

    We have a Windows 2003 Small Business Server and i'm wondering what the best practice is for forwarding all WAN traffic to this server?

    We have a block of 5 IP's which obviously point to our location, but i'm wondering if i should use the DMZ setting in the router or use Static Route to forward all traffic.

    Our server is running several things such as E-Mail serving, Remote Access, Firewall etc.... so we have many ports that need forwarding.

    Many thanks for your time.

    Darren

  2. #2
    Senior Member gss03's Avatar
    Join Date
    Jul 2003
    Location
    Scotland
    Posts
    725
    Thanks
    6
    Thanked
    28 times in 28 posts

    Re: FWD all Wan traffic - Draytek router

    Since you sound like you are using ISA some of this info might not be appropriate.

    For all my SBS sites - (I manage a few) we use the "Open Ports" part of the draytek and forward them to the SBS box in the office.

    The ports we usually open are :

    25 - for mail feed into the server
    4125 - Remote Web Workplace
    443 - https traffic for OWA and OMA
    I've also recently had to open up the IMAP port on an SBS server as the client's MD bought an iPhone - This is only needed if you need IMAP(and IMAP is the only way with iPhone :-( )

  3. #3
    Administrator Moby-Dick's Avatar
    Join Date
    Jul 2003
    Location
    There's no place like ::1 (IPv6 version)
    Posts
    10,665
    Thanks
    53
    Thanked
    384 times in 313 posts

    Re: FWD all Wan traffic - Draytek router

    Quote Originally Posted by gss03 View Post
    Since you sound like you are using ISA some of this info might not be appropriate.

    For all my SBS sites - (I manage a few) we use the "Open Ports" part of the draytek and forward them to the SBS box in the office.

    The ports we usually open are :

    25 - for mail feed into the server
    4125 - Remote Web Workplace
    443 - https traffic for OWA and OMA
    I've also recently had to open up the IMAP port on an SBS server as the client's MD bought an iPhone - This is only needed if you need IMAP(and IMAP is the only way with iPhone :-( )
    Exactly what I used to do
    Think you have to 80 as well if you are using mobile sync ?
    my Virtualisation Blog http://jfvi.co.uk Virtualisation Podcast http://vsoup.net

  4. #4
    MacDaddy! darrensen's Avatar
    Join Date
    Apr 2005
    Location
    Sussex
    Posts
    1,695
    Thanks
    6
    Thanked
    43 times in 37 posts
    • darrensen's system
      • Motherboard:
      • Gigabyte z77 UD3H
      • CPU:
      • i7
      • Memory:
      • 8gb DDR3
      • Storage:
      • Loads!
      • Graphics card(s):
      • EVGA 780 GTX
      • PSU:
      • Corsair 850Watt
      • Case:
      • Coolermaster Storm Trooper
      • Operating System:
      • Win 7 64bit
      • Monitor(s):
      • Dell 24"
      • Internet:
      • Plusnet Fibre 80mb

    Re: FWD all Wan traffic - Draytek router

    Like guys for posting up.

    Strangely enough, when i open the DMZ and point to our server not all the ports are open. At least this is what the chap is telling me who is managing the server. He since installed his router and it works fine. (different brand)

    But i'm pretty sure i can get the draytek going.

    Should i just open the below ports and re direct rather than using the DMZ?

    25
    110
    443
    444
    80
    1723
    3389
    4125

  5. #5
    Senior Member burble's Avatar
    Join Date
    May 2007
    Location
    Olney
    Posts
    1,138
    Thanks
    8
    Thanked
    90 times in 89 posts

    Re: FWD all Wan traffic - Draytek router

    Quote Originally Posted by Moby-Dick View Post
    Think you have to 80 as well if you are using mobile sync ?
    Nope, everything is done over 443.

    I'd only open up the ports you need. You could just shove it in the DMZ and then run a firewall on the server but it makes sense to only have open the holes that you need
    Last edited by burble; 04-01-2008 at 05:57 PM.

  6. #6
    Senior Member gss03's Avatar
    Join Date
    Jul 2003
    Location
    Scotland
    Posts
    725
    Thanks
    6
    Thanked
    28 times in 28 posts

    Re: FWD all Wan traffic - Draytek router


    25
    110
    443
    444
    80
    1723
    3389
    4125
    Port 25 - yes - Exchange uses this for getting mail via SMTP, that is unless you are using the POP3 connector to get mail - if so, close it.

    110 - No - unless you are wanting people staff to have pop3 mail access to the server. Mail retrieval can be better achieved by Exchange over HTTPS.

    443 - yes -

    444 - no idea so no

    80 - Maybe - you could open this one, but it is probably better for all traffic to use https (443)

    1723 - Never opened that one - so NO

    3389 - No, unless you have someone managing the server remotely - This is the remote desktop port. Again. you can better manage this using Remote Web Workplace

    4125 - yes. This is for Remote Web Workplace.

    If you want to PM me with questions feel free :-)

  7. #7
    Administrator Moby-Dick's Avatar
    Join Date
    Jul 2003
    Location
    There's no place like ::1 (IPv6 version)
    Posts
    10,665
    Thanks
    53
    Thanked
    384 times in 313 posts

    Re: FWD all Wan traffic - Draytek router

    1723 is for the VPN if memory serves me correctly - so depends if you need to use VPN connectivity.
    my Virtualisation Blog http://jfvi.co.uk Virtualisation Podcast http://vsoup.net

  8. #8
    Senior Member burble's Avatar
    Join Date
    May 2007
    Location
    Olney
    Posts
    1,138
    Thanks
    8
    Thanked
    90 times in 89 posts

    Re: FWD all Wan traffic - Draytek router

    Yep, 1723 is PPTP.

  9. #9
    MacDaddy! darrensen's Avatar
    Join Date
    Apr 2005
    Location
    Sussex
    Posts
    1,695
    Thanks
    6
    Thanked
    43 times in 37 posts
    • darrensen's system
      • Motherboard:
      • Gigabyte z77 UD3H
      • CPU:
      • i7
      • Memory:
      • 8gb DDR3
      • Storage:
      • Loads!
      • Graphics card(s):
      • EVGA 780 GTX
      • PSU:
      • Corsair 850Watt
      • Case:
      • Coolermaster Storm Trooper
      • Operating System:
      • Win 7 64bit
      • Monitor(s):
      • Dell 24"
      • Internet:
      • Plusnet Fibre 80mb

    Re: FWD all Wan traffic - Draytek router

    Hi,

    Thanks again for your replies.

    The situation is we dont actually own the server we just own the building. The client has opted for an external I.T company to maintain their system and the chap has asked for all the posted ports to be opened to the server.

    I will manually forward all required ports to the server and post back with the results.

    Thanks again guys!

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Similar Threads

  1. Draytek Vigor 2800G mini-review
    By Taz in forum Networking and Broadband
    Replies: 13
    Last Post: 05-09-2020, 08:28 PM
  2. Duan Wan Router - Recommendations?
    By TheChillPill in forum Networking and Broadband
    Replies: 7
    Last Post: 16-05-2009, 10:07 AM
  3. Anyone getting the new draytek router?
    By Robert in forum Networking and Broadband
    Replies: 6
    Last Post: 11-02-2007, 01:08 PM
  4. DrayTek VIGOR 2700VG Wireless ADSL VoIP Router
    By kempez in forum Retail Therapy and Bargains
    Replies: 1
    Last Post: 12-12-2006, 07:40 PM
  5. 360 and draytek router
    By Robert in forum Networking and Broadband
    Replies: 9
    Last Post: 06-10-2006, 04:57 PM

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •