Re: Secure File Server & Active Directory with Cisco Access List

From: aLTeReGo (a@a.com)
Date: 09/03/02


From: aLTeReGo <a@a.com>
Date: Tue, 03 Sep 2002 00:10:40 -0400


        IPSEC does not accomplish anything in this scenario. I MUST
give users some access to the box. I.E. open some port numbers. My
concern is not for the unencrypted data flowing over the network. My
Concern is plugging as many ports as possible.
        As none of these boxes are accessible from the internet or any
other public network my major concern is the users themselves. The end
users being high school students with destructive tendencies.

On Tue, 3 Sep 2002 11:25:31 +0800, "P" <sdfsd@sdfsd.com> wrote:

>Run it all over IPSEC and only allow that through your router.
>
>"aLTeReGo" <a@a.com> wrote in message
>news:jl05nuch57k159p7qip1613dqvmdhabg9d@4ax.com...
>> Here is a very basic overview of my network..
>>
>> "Active Directory" "Windows 2k File Server"
>> | |
>>
>>
>|------------------Network-1------------------------------------------------
>--------|
>> |
>> |
>> |
>> |
>> |
>> [Router W/ACLs]
>> |
>> |
>> |
>> |
>> |
>>
>>
>|------------------Network-2------------------------------------------------
>--------|
>> |
>> "Windows 2k Client"
>>
>>
>> I would like to know the ABSOLUTLE minimum port numbers I will have to
>> open in my router access lists to allow the Windows 2k Client to login
>> to the domain and access the file shares on the file server.
>> Everything is Win2k and I don't want to open a single port that I
>> don't have to. I am trying to acheive the highest level of network
>> security I can at the router.
>>
>>
>>
>> -----------== Posted via Newsfeed.Com - Uncensored Usenet News
>==----------
>> http://www.newsfeed.com The #1 Newsgroup Service in the World!
>> -----= Over 100,000 Newsgroups - Unlimited Fast Downloads - 19 Servers
>=-----
>

-----------== Posted via Newsfeed.Com - Uncensored Usenet News ==----------
   http://www.newsfeed.com The #1 Newsgroup Service in the World!
-----= Over 100,000 Newsgroups - Unlimited Fast Downloads - 19 Servers =-----



Relevant Pages

  • Re: Connecting to Home Computer
    ... cannot transmit IP packets outside the local network). ... assigned by your router. ... You have to add the port too, ... Determine the ports (pcAnywhere uses 5631 for DATA, 5632 for STATUS, I ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: 2 pc network - cant see host files from pc 2 on pc 1
    ... built into your router. ... If your router/switch has five ports then plug your computers into any port ... Network Places other than shortcuts. ... > If the second card is lost on HOST PC then DSL Internet does not connect. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Remote Desktop Web Connection
    ... Or that the Web Client ActiveX control runs on the local computer, ... Windows Network Technology Community - ... >The router is what is restricting you from reaching multiple machines. ... and it understands rules about passing packets on port X ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: moving sbs network
    ... The SBS network is connected to the LAN port. ... so the public wireless router is the DHCP ...
    (microsoft.public.windows.server.sbs)
  • Re: Remote Desktop web connection does not work outside my local N
    ... The web based method, using IIS, still requires you to port forward the RDP protocol to each PC ... > screen opens with the external ip of my router on the title. ... But I cant connect to any other machine on my network even ...
    (microsoft.public.windowsxp.work_remotely)