You are viewing limited content. For full access, please sign in.

Question

Question

Configure firewall port redirect for Laserfiche Client/Server

asked on June 16, 2014

From what I can tell it would appear I only need to forward TCP port 80 through a firewall.  I've successfully configured port tunneling and redirect on my firewall but a client of mine can't make it work and I don't have access to his configuration.  Basically the idea is when outside the clients LAN I should be able to point the LF Client to here.someplace.com:443 and the firewall will redirect to the LF Servers port 80.  The client can't seem to get this to work, can anyone think of a reason it might not be working for them?  I can't find any specific documentation on even manually configuring firewall port exception rules.  Not that it should matter but Client is on 9.1.1

 

0 0

Replies

replied on June 16, 2014

Are you sure that you want to map the HTTPS port to the HTTP port?  Is the firewall supposed to provide SSL functionality, or is the client supposed to use HTTP?

0 0
replied on June 17, 2014

The client configured the firewall and wont even tell me how they did it so I can't be 100% that's why I was hoping to find some very specific white papers on requirements and protocol but if it helps any, when I specify the address and tell the client to use SSL I can see the repository but can't connect to it.  Really I was just hoping to be able to provide them enough info that they can configure their firewall however they want to work with what LFS needs to run,

0 0
replied on June 18, 2014

If the data is going to be routed to port 80 on the server you don't want to use SSL.  Seeing the repository isn't evidence of anything, since you had to attach it, right?  The usual SCP broadcast won't work through a firewall.

 

Just forward port 80 to port 80, 443 to 443.  If port 80 is already in use pick something else; 81 and 8080 are popular choices.  Mapping 443 to 80 seems like you're inviting confusion about the protocol to use.  The traffic that arrives on port 80 at the server must be HTTP, traffic that arrives on 443 must be HTTPS.

0 0
replied on September 26, 2014

Can we safely tell a client that specifying a rule that opens port 80, 5050 and 5051 (for XP) in firewalls  unidirectionaly to the LF Server is fine for situations where there is a firewall between a LF Client and Quick FIelds?

0 0
replied on September 26, 2014

Yes.

0 0
replied on September 26, 2014

To correct my last comment I meant when there is a firewall between a QF or a LF client station and the LF server. Also, for Windows XP I think we need port 5050.

0 0
You are not allowed to follow up in this post.

Sign in to reply to this post.