<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic what is standard port of ms-dtc app-id? in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4559#M3364</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I checked that ms-dtc standard port is tcp 139 on applipedia. I created couple of security rule for ms-dtc app-id and one was applied application-default at service column and other was applied specific service port tcp-49210, tcp-49217, tcp-49291.&lt;/P&gt;&lt;P&gt;Unfortunately PAN warned shadowing rule for above security rules. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I believe that ms-dtc app-id has not only tcp-139 and have a any other or more ports applied.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please let me know what is standard port of ms-dtc app-id.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 03 Apr 2013 07:14:07 GMT</pubDate>
    <dc:creator>Roh1</dc:creator>
    <dc:date>2013-04-03T07:14:07Z</dc:date>
    <item>
      <title>what is standard port of ms-dtc app-id?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4559#M3364</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I checked that ms-dtc standard port is tcp 139 on applipedia. I created couple of security rule for ms-dtc app-id and one was applied application-default at service column and other was applied specific service port tcp-49210, tcp-49217, tcp-49291.&lt;/P&gt;&lt;P&gt;Unfortunately PAN warned shadowing rule for above security rules. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I believe that ms-dtc app-id has not only tcp-139 and have a any other or more ports applied.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please let me know what is standard port of ms-dtc app-id.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 07:14:07 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4559#M3364</guid>
      <dc:creator>Roh1</dc:creator>
      <dc:date>2013-04-03T07:14:07Z</dc:date>
    </item>
    <item>
      <title>Re: what is standard port of ms-dtc app-id?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4560#M3365</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ms-dtc use tcp/135 as standard port according to applipedia &lt;A href="http://apps.paloaltonetworks.com/applipedia/" title="http://apps.paloaltonetworks.com/applipedia/"&gt; Application Research Center&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However its dependent on msrpc, netbios-ss, ms-ds-smb which use:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;msrpc&lt;/P&gt;&lt;P&gt;Standard Ports: tcp/dynamic, udp/dynamic&lt;/P&gt;&lt;P&gt;Depends on: ms-ds-smb, netbios-ss &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;netbios-ss&lt;/P&gt;&lt;P&gt;Standard Ports: tcp/139&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ms-ds-smb &lt;/P&gt;&lt;P&gt;Standard Ports: tcp/445,139, udp/445 &lt;/P&gt;&lt;P&gt;Depends on: netbios-dg, netbios-ss &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;netbios-dg&lt;/P&gt;&lt;P&gt;Standard Ports: udp/138&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so I guess its not the ms-dtc itself that creates the shadowed rule but the dependency towards msrpc...&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 07:43:34 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4560#M3365</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2013-04-03T07:43:34Z</dc:date>
    </item>
    <item>
      <title>Re: what is standard port of ms-dtc app-id?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4561#M3366</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;By the way, shadowing rule sounds odd when you use appid's.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are you sure that none of the above dependencies isnt already used in the other rules?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In PANOS 5.0 PAN did some work regarding dependencies so one doesnt (in many cases) have to manually add all dependencies needed which gives that your previous workaround of manually added appid's (dependencies) can now be removed if you use 5.0 or newer.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 07:58:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4561#M3366</guid>
      <dc:creator>mikand</dc:creator>
      <dc:date>2013-04-03T07:58:52Z</dc:date>
    </item>
    <item>
      <title>Re: what is standard port of ms-dtc app-id?</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4562#M3367</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PANOS 5.0.x is installed on my device that makes warn shadowing rule caused you mentioned. It's a cool enhanced app-id!!!. Many Thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Application Dependency Enhancement – For some protocols, you can allow an application in security policy without &lt;/P&gt;&lt;P&gt;explicitly allowing its underlying protocol. This support is available if the application can be identified within a predetermined point in the session, and has a dependency on any of the following applications: &lt;STRONG&gt;HTTP, SSL, MSRPC, RPC, &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;t.120, RTSP, RTMP, and NETBIOS-SS&lt;/STRONG&gt;. Custom applications based on HTTP, SSL, MS-RPC, or RTSP can also be &lt;/P&gt;&lt;P&gt;allowed in security policy without explicitly allowing the underlying protocol. For example, if you want to allow Java &lt;/P&gt;&lt;P&gt;software updates, which use HTTP (web-browsing), you no longer have to allow web-browsing. This feature will reduce &lt;/P&gt;&lt;P&gt;the overall number of rules needed to manage policies.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 03 Apr 2013 08:19:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/what-is-standard-port-of-ms-dtc-app-id/m-p/4562#M3367</guid>
      <dc:creator>Roh1</dc:creator>
      <dc:date>2013-04-03T08:19:18Z</dc:date>
    </item>
  </channel>
</rss>

