dialog box appears. The dialog box includes the following
information:
The message displays the name of the program
and the name of the publisher of the program. This dialog box has these options:
The next section explains how to use this dialog box as one of
the methods to enable programs.
To work correctly, some programs and games must receive
information over the network. The information enters your computer through an
port. For Windows Firewall to permit this information to enter,
the correct inbound port must be open on your computer. To enable a program to
communicate like it did before Windows XP SP2 was installed, and to enable
programs that you want to run, use one of the following methods.
dialog box, the program continues to be
blocked. To enable a program by using Windows Firewall, follow these steps:
Adding a program to the list of exceptions has the following
advantages:
If your program still does not seem to work after you add the
program to the list of exceptions, or if you cannot locate the program in step
4 of the previous section, you can open a port manually.
Before you can add a
port or ports manually, you have to identify the ports that are used by the
program. A reliable method for identifying the ports that are used by the
program is to contact the vendor. If you cannot do this, or if a list of ports
that are used by the program is not available, you can use Netstat.exe to
identify the ports that are used by the program.
If the program uses more than one port, repeat this procedure to identify the additional ports that are used by the program. If you repeat the procedure and the port number that the program uses continues to change, add a program-based exception or contact the vendor of the program.
If you cannot identify the ports that are used by the program, you
can open a port manually. To identify the specific port number to open, contact
the product vendor or see the product user documentation. After you identify
the port number that you want to open, follow these steps:
For additional information
about configuring Windows Firewall, click the following article number to view
the article in the Microsoft Knowledge Base:
The following lists the programs and games that may require you to
open the port or ports manually so that the programs can work correctly.
|
Visual Studio .NET | Microsoft | See the third-party documentation | See the third-party documentation | Needed only for Remote DCOM
debugging |
SQL | Microsoft | Dynamically assigned ports for
RPC and DCOM | | Needed only for remote debugging |
Backup Exec 9 | Veritas | 10000
| C: \Program Files \Veritas \Backup
Exec \RANT32 \beremote.exe | Needed only to back up a client
from a server |
Ghost Server Corporate Edition 7.5 |
Symantec | 139-TCP-NetBIOS Session Service; 445-TCP-SMB over TCP;
137-UDP-NetBIOS Name Service; 138-UDP-NetBIOS Datagram Service | See the third-party documentation | Needed to push down a ghost client |
Symantec AntiVirus Corporate Edition 8.0 | Symantec
| File and Printer Sharing | Checking the "Allow file and printer
sharing" check box opens these ports: UDP 137, 138; TCP 139, 445.
| Needed to install client |
SMS 2003 Server | Microsoft | Enable File and
Printer Sharing ports | See the third-party documentation | Needed to view
Windows XP SP2 Client Event Viewer |
Cute FTP 5.0 XP | GlobalSCAPE | 21 or FTP server
| See the third-party documentation | Needed to FTP in to a Windows XP
SP2-based computer |
Exceed 7.0, 8.0 | Hummingbird | 21 or FTP server
| See the third-party documentation | Needed so that FTP for Windows Explorer
can connect to remote computers |
KEA! 340 5.1 | Attachmate | 23 or 'Telnet server'
| See the third-party documentation | Needed to establish Telnet session to
remote host |
Reflection
10 and 11 | WRQ | 23 | See the third-party documentation | Needed to establish Telnet
session to remote host |
Reflection
10 and 11 | WRQ | 6000
(TCP/IP) and 177 (UDP) | See the third-party documentation | Needed
to establish X-Windows Sessions |
Reflection
10 and 11 | WRQ | 20
or 21 | See the third-party documentation | Needed so
that FTP client can connect to remote computers |
Smarterm Office 10 and Smarterm 11 | Esker
Software | 23 or 'Telnet server' | See the third-party documentation | Needed to establish Telnet session to remote host |
Smarterm Office 10 and Smarterm 11 | Esker
Software | 21 or FTP server | See the third-party documentation | Needed
so that the FTP tool can connect to remote computers |
ViewNow 1.05 | Netmanage | FTP server or 21
| See the third-party documentation | Needed so that FTP tool can connect to
remote computers |
ViewNow 1.0 and 1.05 | Netmanage | 6000 (TCP/IP)
and 177 (UDP) | See the third-party documentation | Needed to establish
X-Windows Sessions |
ViewNow 1 or 1.05 | Netmanage | Telnet Server or
23 | See the third-party documentation | Needed to establish Telnet session to
remote host |
Microsoft Operations Manager 2000 SP1 | Microsoft
| Enable ICMP echo request, File and Printer Sharing and UDP
| See the third-party documentation | Needed to push MOM Agent onto a Windows
XP SP2-based client that has Windows Firewall enabled |
AutoCAD 2004, 2005 | Autodesk | 21
| See the third-party documentation | Needed to browse projects using FTP
viewer (File Open dialog) when remote FTP host has Windows Firewall
enabled. |
Backup Exec 9.1.4691 | Veritas | See the third-party documentation | %Program Files% \Veritas \Backup
Exec \RANT \beremote.exe | Needed to back up Windows XP
SP2-based client |
Windows Scanner and Camera Wizard | Xerox Network
Scanners | 21 | See the third-party documentation | Needed so that the
Scanner and Camera Wizard starts and the scanned images are available for the
user to access. |
ColdFusion MX Server Edition 6 | Macromedia | TCP
(by default, 8500) | See the third-party documentation | Needed to allow
remote access as Web server |
CA ARCserve | Computer
Associates | 137-UDP-NetBIOS Name Service; 138-UDP-NetBIOS Datagram
Service; 139-TCP-NetBIOS Session Service; 704-UDP; 1478-UDP-MS-sna-base;
1900-UDP-SSDP; 6050-TCP-ARCserve Service; 6051-TCP-ARCserve Service
| See the third-party documentation | Needed for remote installs, licensing,
and client communications |
EDM File System Agent 4.0 | EMC | 3895
| See the third-party documentation | Needed to install EDM client from server
to Windows XP SP2 |
Microsoft Systems Management Server 2003 | Microsoft
| TCP:2701
| %WINDIR% \System32 \CCM \CLICOMP \RemCtrl \Wuser32.exe
| Needed so that Remote Tool can remote control a Windows XP SP2-based
client computer |
Aelita ERdisk for Active Directory 6.7 | Quest
Software | See the third-party documentation | File and Printer Sharing
| Needed to contact a remote computer |
Hummingbird Host Explorer 8 | Hummingbird | 23
TCP and 21 TCP | See the third-party documentation | Needed to Telnet in to a
Windows XP SP2-based client |
BV-Admin Mobile | Bind View | See the third-party documentation | File and Printer Sharing | Needed to contact a
remote computer |
SQL 2000a | Microsoft | 1433 and 1434
| See the third-party documentation | Needed to connect to remote
computer |
Backup Exec 8.6.1 | | | | Needed
so that the server can push remote agent to a Windows XP SP2-based client |
Microsoft SNA 4.0 SP3 | Microsoft | See
documentation | File and Printer Sharing | Needed to see a Windows
XP SP2-based client |
Extra! Personal Client 6.5 and
6.7 | Attachmate | Telnet Server or port 23 | See the third-party documentation | Needed to establish Telnet session to remote host |
Extra! Enterprise 2000 | Attachmate | Telnet
Server or port 23 | See the third-party documentation | Needed to establish
Telnet session to remote host |
Extra! Bundle for TCP/IP
6.6 | Attachmate | Telnet Server or port 23 | See the third-party documentation | Needed to establish Telnet session to remote host |
Volume Manager 3.1 | Veritas | 2148
| C: \Progam Files \Veritas \Veritas Object
Bus \Bin \vxsvc.exe | Needed to connect to a Windows XP
SP2-based client |
BMC Patrol for Windows 2000 | BMC Software | On
the Windows XP SP2-based (client) computer: TCP ports 3181, 10128 and 25; UDP
ports 3181, 10128 and 25 | \\<Server Name> \BMC
Software \Patrol
3-4 \Best1 \6.5.00 \bgs \bin \Best1CollectGroup.exe
| Needed to allow connection of server to client computer. Make sure
that you have shared the BMC Patrol file on the server before you try to move
to the default exception path on the client. |
eTrust 6.0.100 | Computer Associates | File and
Printer Sharing ports and ICMP echo request and port TCP 42510 | See the third-party documentation | Needed to remote install to Windows XP SP2 |
NetShield 4.5 | McAfee Security | See the third-party documentation | File and Printer sharing | Needed to Remote
Connect to a Windows XP SP2-based client |
Computer Associates eTrust 7.0 | Computer
Associates | Add the File and Printer Sharing ports and ICMP echo request
| See the third-party documentation | Needed so that a Windows Server 2003
eTrust 7.0 server can remotely test logon to a Windows XP SP2-based client
|
Computer Associates eTrust 7.0
| | | | Needed so that a Windows Server 2003 eTrust
7.0 server can remotely install the client eTrust software on Windows XP
SP2-based computers. Resolved by setting the following to 0 and then rebooting:
HKEY_LOCAL_MACHINE \SOFTWARE \Policies \Microsoft \Windows
NT \RPC \RestrictRemoteClients (DWORD value) |
Retrospect | Dantz
| 497 | 497 | Visit
http://www.dantz.com/en/support/kbase.dtml?id=28189 |
Symantec Ghost Corporate Edition 7.5, 8.0, and
8.2 | Symantec | In File and Printer Sharing, select the Allow file and printer sharing check box that opens UPD ports 137 and 138, and TCP port 139 and
445 | | Needed to do a remote client install |
Symantec AntiVirus Corporate Edition 8.x and
9.x | Symantec | Open IP (UDP) ports 2967 and 33345 for IPX. In
addition, open ports 38293, 38037, and 38292 for UDP traffic. In File and
Printer Sharing, select the Allow file and printer sharing check box that opens UPD ports 137 and 138, and TCP ports 139 and
445 | | Visit
http://www.symantec.com/techsupp/ enterprise/sp2/faq.html |
IBM Tivoli Storage Manager | IBM | See IBM
Technote | See IBM Technote | The IBM Technote title is "Windows XP
Service Pack 2 firewall setting for TSM Client." The IBM Technote is
available at
http://www.ibm.com/software/sysmgmt/products/support/ |
Microsoft provides third-party contact information to help you find technical
support. This contact information may change without notice. Microsoft does not
guarantee the accuracy of this third-party contact information.
Microsoft provides third-party contact information to help you find technical
support. This contact information may change without notice. Microsoft does not
guarantee the accuracy of this third-party contact information.
The third-party products that this article discusses are
manufactured by companies that are independent of Microsoft. Microsoft makes no
warranty, implied or otherwise, regarding the performance or reliability of
these products.
For information about how to contact any
of the manufacturers that are listed in one of the following articles, click
the appropriate article number in the following list to view the article in the
Microsoft Knowledge Base: