Strange ARD port 3283 block

My ARD worked fine to two XServes ("tulip" and "video") on the same subnet.
I accidentally turned off ARD on tulip (Server 10.6.2) FROM the client ARD. DUH!
Anyhow, I restarted it following the guidelines here
http://discussions.apple.com/thread.jspa?threadID=2342445&tstart=15
and here http://support.apple.com/kb/HT2370
However, I can't log in any more with ARD on tulip. A port scan shows that port 3283 is blocked.
The firewall service is off. Changing ethernet switch ports with "video" does no good, "video" still works with ARD but tulip does not, so it's not a switch issue. sudo ipfw list shows this
00001 allow udp from any 626 to any dst-port 626
01000 allow ip from any to any via lo0
01010 deny ip from any to 127.0.0.0/8
01020 deny ip from 224.0.0.0/4 to any in
01030 deny tcp from any to 224.0.0.0/4 in
12300 allow tcp from any to any established
12301 allow tcp from any to any out
12302 allow tcp from any to any dst-port 22
12302 allow udp from any to any dst-port 22
12303 allow udp from any to any out keep-state
12304 allow tcp from any to any dst-port 53 out keep-state
12304 allow udp from any to any dst-port 53 out keep-state
12305 allow udp from any to any in frag
12306 allow tcp from any to any dst-port 311
12307 allow tcp from any to any dst-port 625
12308 allow icmp from any to any icmptypes 8
12309 allow icmp from any to any icmptypes 0
12310 allow igmp from any to any
12311 allow tcp from any to any dst-port 23
12311 allow udp from any to any dst-port 23
12312 allow tcp from any to any dst-port 80
12313 allow tcp from any to any dst-port 3283,5900
12313 allow udp from any to any dst-port 3283,5900
65534 deny ip from any to any
65535 allow ip from any to any

ARD needs open TCP and UDP port 3283 and TCP and UDP port 5900. And for encrypted file transfer TCP port 22. 5900 and 22 are open.

Is there any rule that would be blocking port 3283 on tulip?
The ARD Discussion sent me here! Thanking anyone for info.

Intel XServe, Mac OS X (10.6.2)

Posted on Mar 12, 2010 7:53 AM

Reply
5 replies

Mar 12, 2010 10:52 AM in response to foilpan

foilpan, thanks for the response.
I ran kickstart combination, as I mentioned above, many times with no luck, and also manually turned ARD on and off, with full admin privileges.
Port 3283 is closed and stays that way, even though the Firewall service is off and System Preferences>Sharing>Apple Remote Desktop is On.
You need both 5900 and 3283 TCP/UDP for full ARD functionality. Port 22 is used for file transfers.

This is not so much an ARD question as how do I open port 3283 on the server?
Is there a command line or ipfw parameter I can change?
Is the syntax correct in the above ipfw list for 3283?
Thanks

Mar 12, 2010 10:53 AM in response to Xalio

Xalio, thanks for the response also.
I just need to know how to open port 3283. I need the full ARD functionality.
Apple Remote Desktop uses the following TCP and UDP ports for the functions indicated.
PORT/PROTOCOL/FUNCTION
5900/TCP/Observe and Control
5900/UDP/Send screen, share screen
3283/TCP/Reporting
3283/UDP/Everything else
22/TCP/Encrypted file transfer, observe, and control (using SSH tunnel)

I believe this is a closed port issue, and not an ARD one.

This thread has been closed by the system or the community team. You may vote for any posts you find helpful, or search the Community for additional answers.

Strange ARD port 3283 block

Welcome to Apple Support Community
A forum where Apple customers help each other with their products. Get started with your Apple Account.