Skip to main content
Question

Question on ports , firewalls and the JSS

  • September 22, 2015
  • 3 replies
  • 22 views

Forum|alt.badge.img+11

I'm curious as to why I'm seeing both Apple's 17.x.x.x. block and our clients hitting our JSS server on tons of different ports. Most of the ports are listed as iChat, Quicktime, Facetime, GameCenter ports on Apple port list (some are not on that at all which leads me to believe that it isn't up-to-date). Most of these are being blocked by our firewall.

Our JSS is outside facing and has an external IP AND everything seems to be working. I was just wondering why these services need to hit the JSS server?

3 replies

Chris_Hafner
Forum|alt.badge.img+27
  • Jamf Heroes
  • September 22, 2015

https://jamfnation.jamfsoftware.com/article.html?id=34


Chris_Hafner
Forum|alt.badge.img+27
  • Jamf Heroes
  • September 22, 2015

https://jamfnation.jamfsoftware.com/article.html?id=34


Forum|alt.badge.img+11
  • Author
  • Valued Contributor
  • September 23, 2015

Thanks for that link. We do have the JSS working OK.

I had the external IP address of our server and our NAT'd client IP swapped in my head.

After more looking...it is clients on our Public WiFi trying to Facetime clients on our Secured Wifi. Public has access to the Internet only so they get routed out of the network and then are trying to come back in and getting blocked. Hence why we see so many Facetime/iChat used ports. All is working as intended.