Answered by:
Firewall Ports at Home

Question
-
For my home computers to be access via Remote from let's say my office using www.mesh.com, do I require to open specific ports on my home router? is there any configuration I need on my home router in order to connect a a home computer that already has the Mesh Client installed?Tuesday, May 27, 2008 2:37 PM
Answers
-
Hi,
I'm sorry for the delay in responding. Live Mesh does not support connections through proxies that require authentication. It would seem that this is the issue people here are running into.
Thanks,
Ben.- Marked as answer by Ben [Live Mesh] Tuesday, June 3, 2008 7:06 PM
- Edited by Ben [Live Mesh] Wednesday, July 9, 2008 5:28 PM edit
Tuesday, June 3, 2008 7:06 PM
All replies
-
Nope. :-) The remote access via Live Mesh to computers running the Live Mesh client appears to traverse a typical NAT router just fine with no special configuration required. No special firewall rules, no port forwarding, it just works...
-steve
Microsoft MVP Windows Live / Windows Live OneCare Forum ModeratorTuesday, May 27, 2008 2:45 PMModerator -
OK if that is the case, then any idea why I'm getting an error connection to connect to the PC? Does the PC needs to be logged in to the desktop at my home first in order for the Mesch Client to work its magic or can the PC just be turned on? Usually during the night the PC is on stand by and around 9AM it wakes up via wake-up on LAN. Once I'm here at work I try to connect using standard ports 80/443 via www.mesh.com, I can see the PC in my Mesh dashboard but I cannot connect to it. Any ideas?Tuesday, May 27, 2008 3:08 PM
-
Forgot to ask one more question here... can I install Mesh Client on a Windows Server 2003 computer?Tuesday, May 27, 2008 3:09 PM
-
I guess the first question would be - can you remote to it while on the same LAN at home, behind the router? As long as the PC is visible and available in the Mesh, then you should be able to connect to it.
Here at my office, I cannot use the Live Mesh client behind the authenticated proxy in use. I am also unable to connect to any of the devices in my mesh through that proxy from the Live Desktop. I can, however, connect from outside of my router, from another ISP.
And, no, Server is not yet a supported OS.
-steve
Microsoft MVP Windows Live / Windows Live OneCare Forum ModeratorTuesday, May 27, 2008 3:18 PMModerator -
OH I see... I'm in the same situation as you then. Here at work we use Microsoft ISA Server as the proxy, I'm an authenticated user to the proxy server. I already clarified with the Security Team that the proxy allows all outbound traffic to port 80/443 http:/https with no exception or any restricted rule. I can get to the Mesh dashboard no problem. I was under the impression that the Mesh solution was to overcome the fact about people like me when at work and there was a proxy, isn't that the case? Have you being able to fix it? Is there anything the team needs to open on the ISA server? Thank you.Tuesday, May 27, 2008 3:26 PM
-
I'd have to leave it to the Live Mesh team to explain the details as I haven't even tried to deal with the issue via the corporate proxy server here. I know that it's pretty restrictive and outside of my control. The Live Desktop works, but I can't remote to any device when I'm connected from behind the firewall at work. And, as I noted earlier, I can't use the client from behind the proxy, either.
-steve
Microsoft MVP Windows Live / Windows Live OneCare Forum ModeratorTuesday, May 27, 2008 4:21 PMModerator -
Hi MatrixDude,
To clarify: Does your corporate proxy require some sort of authentication in order to use it?
Thanks,
Ben.Wednesday, May 28, 2008 9:57 PM -
Ben - Live Mesh said:
Hi MatrixDude,
To clarify: Does your corporate proxy require some sort of authentication in order to use it?
Thanks,
Ben.
I think that's what MatrixDude noted in the previous post - "...ISA Server as the proxy, I'm an authenticated user to the proxy server..."
In my case, I don't think it is ISA Server as the proxy, but it is an authenticated proxy nonetheless.
-steve
Microsoft MVP Windows Live / Windows Live OneCare Forum ModeratorFriday, May 30, 2008 1:42 PMModerator -
Hi,
I'm sorry for the delay in responding. Live Mesh does not support connections through proxies that require authentication. It would seem that this is the issue people here are running into.
Thanks,
Ben.- Marked as answer by Ben [Live Mesh] Tuesday, June 3, 2008 7:06 PM
- Edited by Ben [Live Mesh] Wednesday, July 9, 2008 5:28 PM edit
Tuesday, June 3, 2008 7:06 PM -
Hi,
This is a really important need of mine to make Mesh a useful tool. Is this in development or on the future enhancements list?
All the 'mesh like' systems I've seen appear to suffer the same problem - is there a good technical reason why this isn't being done (my past approach has been to use Putty to SSH tunnel traffic to a local SSH server - messy and adds to much overhead esp. on low bandwidth connections)?
Thanks.
OliWednesday, July 9, 2008 7:44 AM -
Hi Oli,
We do not currently have any "near term" plans to support authenticated proxies, but please feel free to add this idea to our Wish List sticky.
Thanks,
Ben.Tuesday, July 15, 2008 10:50 PM -
Hi Ben,
I share the pain of the people here, my office also use ISA server proxy with authetication. I can sync my files without problem, but can't get on my corporate desktop from outside. This is really a pain and it will be an added bonus to the creadibilty of Mesh to add the feature. It will definitely differentiate Mesh from competition.
Like MatrixDude said, it was MS promise to make Mesh firewall agnostic. Please make it true to the very last letter of that promise.
P.S.> Possibly not supported at the moment, Mesh can be installed on Windows Server 2003 unlike Stephen said above. Have it running here on my server anyway.Tuesday, July 29, 2008 10:14 AM -
I have the firewall on my router at home fully locked down. i.e. I only let through traffic that I want to get through and I am having the same problem, in that I cannot remote to my PC, although I can access it internally. Is there a standard port number or protocol and / or IP Address that I can add to the Firewall to let Live Mesh communicate with a particular PC? Cheers.Friday, August 1, 2008 2:35 PM
-
Newbie123 said:According to available information at present, Live Mesh uses the Http protocol to traverse firewall and NAT routers. If you are using corporate-style firewall at home, then you will have to disable proxy-authentication to have Mesh use the Remote-desktop feature. You shouldn't have problems with file-sync though; even with your firewall locked down; or did you block http ports too?.
I have the firewall on my router at home fully locked down. i.e. I only let through traffic that I want to get through and I am having the same problem, in that I cannot remote to my PC, although I can access it internally. Is there a standard port number or protocol and / or IP Address that I can add to the Firewall to let Live Mesh communicate with a particular PC? Cheers.
Also note that you need to allow SSL traffic, because Mesh (Passport) authentication and traffic takes place in SSL.
Cheers,
McAkins.Friday, August 1, 2008 4:13 PM