Search icon CANCEL
Subscription
0
Cart icon
Your Cart (0 item)
Close icon
You have no products in your basket yet
Arrow left icon
Explore Products
Best Sellers
New Releases
Books
Videos
Audiobooks
Learning Hub
Free Learning
Arrow right icon
Arrow up icon
GO TO TOP
Microsoft System Center Data Protection Manager 2012 R2 Cookbook

You're reading from   Microsoft System Center Data Protection Manager 2012 R2 Cookbook Over 100 recipes to build your own designs exploring the advanced functionality and features of System Center DPM 2012 R2

Arrow left icon
Product type Paperback
Published in Apr 2015
Publisher
ISBN-13 9781782172710
Length 408 pages
Edition 1st Edition
Languages
Arrow right icon
Authors (2):
Arrow left icon
Robert Hedblom Robert Hedblom
Author Profile Icon Robert Hedblom
Robert Hedblom
Robert Heldblom Robert Heldblom
Author Profile Icon Robert Heldblom
Robert Heldblom
Arrow right icon
View More author details
Toc

Table of Contents (16) Chapters Close

Preface 1. Pre-installation Tasks FREE CHAPTER 2. Installation and Upgrade 3. Post-installation Tasks 4. File Server Protection 5. SQL Protection 6. Hyper-V Protection 7. SharePoint Protection 8. Exchange Server Protection 9. Client Protection 10. Workgroup Protection and CBA 11. Azure Integration 12. Disaster Recovery 13. Tape Management 14. Monitoring and Automation Index

Firewall configuration

This recipe will cover the firewall configuration that is needed to establish a successful communication between DPM 2012 R2 and the data source that should be included in the DPM protection.

Getting ready

Opening just the right amount of firewall ports with the right direction of communication will provide you a more high-end security approach. DPM uses Microsoft standard communication ports, but for some features, there are a few other TCP ports that need to be opened.

Protocol

Port

DCOM

135 / TCP

DPM specific ports

5718 / TCP

5719 / TCP

DNS

53 / UDP

Kerberos

88 / UDP

88 / TCP

LDAP

389 / UDP

389 / TCP

NetBIOS

137 / UDP

138 / UDP

139 / UDP

445 / TCP

Centralized Console

6075 / TCP

1433 / TCP

1434 / UDP

80 / TCP

443 / TCP

50000 – 65000 / TCP

4022 / TCP

5723 / TCP

How to do it…

Having the Windows firewall enabled would be considered the most natural thing. However, many companies rely on a physical firewall as their first line of defense meaning that their Windows firewalls are disabled.

An easy approach is to create a Group Policy Object (GPO) that holds the configuration for the Windows firewalls. Use the Advanced mode for firewall configurations so you can easily provide the necessary configurations.

How it works…

One important thing regarding the direction of communication is to understand who is initiating the communication. When DPM is protecting server workloads, the DPM server will call for the DPM agent to start its VSS request, but when DPM is protecting clients, the DPM server will wait for the DPM agent present on the client to call in.

There's more…

You could also limit the actual port range for the high-end ports to a specific port range. For instructions on how to do this, you can refer to this article: http://blogs.technet.com/b/dpm/archive/2011/06/28/how-to-limit-dynamic-rpc-ports-used-by-dpm-and-protected-servers.aspx.

You have been reading a chapter from
Microsoft System Center Data Protection Manager 2012 R2 Cookbook
Published in: Apr 2015
Publisher:
ISBN-13: 9781782172710
Register for a free Packt account to unlock a world of extra content!
A free Packt account unlocks extra newsletters, articles, discounted offers, and much more. Start advancing your knowledge today.
Unlock this book and the full library FREE for 7 days
Get unlimited access to 7000+ expert-authored eBooks and videos courses covering every tech area you can think of
Renews at $19.99/month. Cancel anytime
Banner background image