Then I would do this via VPN instead. Never EVER would i open all ports on the outside of a firewall, even if you could filter on source IP. Spoofing falls into mind.
Instead go with L2TP VPN. It is quite secure, because you use certificates, thereby "you" always know with whom you are "talking" to.
And, if you're doing this with ISA 2004, you can even apply certain firewall rules on VPN Clients from your client.
You need to impress upon your client the need to define the port required. No application needs everything open, not even good old Microsoft NetBIOS. If the guy doesn’t know, work with him to find out what needs…
Sorry to sound a like a guide to Firewall 101, but he’ll thank you when the next network borne virus is running through the internet… well he won’t. but that’s just client’s for you
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.