Thursday, July 23, 2009

Network connect : Client System Checklist for Connectivity Access

When users are unable to access resources through the IVE (Instant Virtual Extranet), it is possible that there is a client-side firewall software, Anti-Malware, Anti-Spyware, or Anti-Virus that is preventing the access.

Begin by checking the settings on the client application software to verify that the IVE feature used is allowed access.

For Network Connect to communicate, the following ports must be open:

- UDP port 4242 on loopback address
- TCP port 443
- If using ESP mode, the UDP port configured on the SSL VPN ( default is UDP 4500)

If firewall filters are based on Application Name, use the following table to determine the process to permit:

- Host Checker/Secure Virtual Workspace (SVW) : dsHostChecker.exe
- Cache Cleaner : dsCacheCleaner.exe
- Windows Secure Application Manager (WSAM) : dsSamProxy.exe
- Network Connect (NC): dsNCService.exe / dsNetworkConnect.exe
- Windows Terminal Services (WTS): dsTermServ.exe
- Citrix Terminal Services : dsCitricProxy.exe
- Secure Meeting : dsCBoxUI.exe
- Juniper Installer Service : dsAccessService.exe

No comments: