> The problem ( as I see it ) is that citrix expects a connect on 1494, which
>I can accomidate, but then it uses different ports on the way back.... ( on
>my first connection it was 1123, second 1130, etc, etc...)
>Any way to work with this ?
>
>should I look at ipportfw ? if so , how ?

You will have to open the following ports via IPPORTFW (recommended) or
IPAUTOFW.  Then.. as your normal policies should already support, all HIGH
return ports should be allowed OUT of the MASQ box.

ica             1494/tcp    ica   
ica             1494/udp    ica   
#                           John Richardson, Citrix Systems

icabrowser      1604/tcp   icabrowser
icabrowser      1604/udp   icabrowser
#                          Brad Pedersen <[EMAIL PROTECTED]>  

Beyond that.. it should work fine.  I know that Winframe client access 
works fine behind a MASQ box.

--David
.----------------------------------------------------------------------------.
|  David A. Ranch - Remote Access/Linux/PC hardware      [EMAIL PROTECTED]  |
!----                                                                    ----!
`----- For more detailed info, see http://www.ecst.csuchico.edu/~dranch -----'
---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]
For daily digest info, email [EMAIL PROTECTED]

Reply via email to