Firewall configuration

 

 

Services

 

 

 

 

 

 

Table 6: FortiGate predefined services (Continued)

 

 

 

 

 

 

 

 

Service name

Description

Protocol

Port

 

 

 

 

 

 

H323

H.323 multimedia protocol. H.323 is a standard

tcp

1720, 1503

 

 

approved by the International

 

 

 

 

Telecommunication Union (ITU) that defines

 

 

 

 

how audiovisual conferencing data is

 

 

 

 

transmitted across networks.

 

 

 

 

 

 

 

 

HTTP

HTTP is the protocol used by the word wide

tcp

80

 

 

web for transferring data for web pages.

 

 

 

 

 

 

 

 

HTTPS

HTTP with secure socket layer (SSL) service

tcp

443

 

 

for secure communication with web servers.

 

 

 

 

 

 

 

 

IKE

IKE is the protocol to obtain authenticated

udp

500

 

 

keying material for use with ISAKMP for

 

 

 

 

IPSEC.

 

 

 

 

 

 

 

 

IMAP

Internet Message Access Protocol is a protocol

tcp

143

 

 

used for retrieving email messages.

 

 

 

 

 

 

 

 

Internet-Locator-

Internet Locator Service includes LDAP, User

tcp

389

 

Service

Locator Service, and LDAP over TLS/SSL.

 

 

 

 

 

 

 

 

IRC

Internet Relay Chat allows people connected to

tcp

6660-6669

 

 

the Internet to join live discussions.

 

 

 

 

 

 

 

 

L2TP

L2TP is a PPP-based tunnel protocol for

tcp

1701

 

 

remote access.

 

 

 

 

 

 

 

 

LDAP

Lightweight Directory Access Protocol is a set

tcp

389

 

 

of protocols used to access information

 

 

 

 

directories.

 

 

 

 

 

 

 

 

NetMeeting

NetMeeting allows users to teleconference

tcp

1720

 

 

using the Internet as the transmission medium.

 

 

 

 

 

 

 

 

NFS

Network File System allows network users to

tcp

111, 2049

 

 

access shared files stored on computers of

 

 

 

 

different types.

 

 

 

 

 

 

 

 

NNTP

Network News Transport Protocol is a protocol

tcp

119

 

 

used to post, distribute, and retrieve USENET

 

 

 

 

messages.

 

 

 

 

 

 

 

 

NTP

Network time protocol for synchronizing a

tcp

123

 

 

computer’s time with a time server.

 

 

 

 

 

 

 

 

OSPF

Open Shortest Path First (OSPF) routing

 

89

 

 

protocol. OSPF is a common link state routing

 

 

 

 

protocol.

 

 

 

 

 

 

 

 

PC-Anywhere

PC-Anywhere is a remote control and file

udp

5632

 

 

transfer protocol.

 

 

 

 

 

 

 

 

PING

Packet Internet Groper is a utility to determine

icmp

8

 

 

whether a specific host is accessible by its IP

 

 

 

 

address.

 

 

 

 

 

 

 

 

POP3

Post office protocol email protocol for

tcp

110

 

 

downloading email from a POP3 server.

 

 

 

 

 

 

 

 

PPTP

Point-to-Point Tunneling Protocol is a protocol

tcp

1723

 

 

that allows corporations to extend their own

 

 

 

 

corporate network through private tunnels over

 

 

 

 

the public Internet.

 

 

 

 

 

 

 

 

QUAKE

For connections used by the popular Quake

udp

26000,

 

 

multi-player computer game.

 

27000,

 

 

 

 

27910,

 

 

 

 

27960

 

 

 

 

 

FortiGate-400 Installation and Configuration Guide

183

Page 183
Image 183
Fortinet 400 manual 183, Https