cancel
Showing results for 
Search instead for 
Did you mean: 

Allowing other Protocols through Gateway

Does anyone know how I allow other protocols through the gateway such as NTP ?

8 Replies
Reliable Contributor asabban
Reliable Contributor
Report Inappropriate Content
Message 2 of 9

Re: Allowing other Protocols through Gateway

Are you running MWG6 or 7? Did you deplay in a transparent mode or explicit proxy?


Thanks,

Andre

Re: Allowing other Protocols through Gateway

Its in explicit and its a GW 7 ..

Thanks,

ittech
Level 13
Report Inappropriate Content
Message 4 of 9

Re: Allowing other Protocols through Gateway

I was uder the impression it passed any protocols that weren't specified here:

Untitled.png

Re: Allowing other Protocols through Gateway

Problem is this is only for TCP, and NTP is UDP.

Reliable Contributor asabban
Reliable Contributor
Report Inappropriate Content
Message 6 of 9

Re: Allowing other Protocols through Gateway

Good point Felix, NTP is a bad example.

However in transparent deployments we would simply pass it, so it should work. In explicit mode this won´t work.

Best,

Andre

Re: Allowing other Protocols through Gateway

And allow FTP with Proxy Explicit configuration it is possible?.

Thanks.

Re: Allowing other Protocols through Gateway

Looks like the only way to achieve this is via the use of iptables. Has anyone else set up iptables on these boxes, it appears the standard iptables file that is generated which includes the rules (/etc/sysconfig/iptables) is removed on reboot (??)...

Reliable Contributor asabban
Reliable Contributor
Report Inappropriate Content
Message 9 of 9

Re: Allowing other Protocols through Gateway

That will only be valid in transparent deployments 🙂

When using MWG as an expplicit proxy we won´t forward other protocols at all. If you want to forward NTP for example (e.g. point your Clients to MWG as an NTP server) you probably have to setup a port forwarding rule to open the specific port on MWG and forward it to the approrpiate destination server.

Best,

Andre

More McAfee Tools to Help You
  • How-to: Endpoint Removal Tool
  • Support: Endpoint Security
  • Visit: Business Service Portal
  • More: Search Knowledge Articles
  • ePolicy Orchestrator Support

    • Download the new ePolicy Orchestrator (ePO) Support Center Extension which simplifies ePO management and provides support resources directly in the console. Learn more about ePO Support Center