I am working on egress filtering at our border router and need to know what ports or port ranges the SA 4000 needs for outbound connections. I would have expected that just allowing all prevously established inbound connections would do the trick, but it doesn't. It seems as though a new session is initiated from the Juniper VPN to the client on a random port above 1024. Without doing a full packet capture, this is the best description I can come up with. Any help would be greatly appreciated.
... View more