Re: IP Filter Order
From: Steven L Umbach (n9rou_at_no-spam.ameritech.net)
Date: 03/25/04
- Next message: Steven L Umbach: "Re: VPN Setup"
- Previous message: NETCRAMMER: "Re: Default Directory and File Permissions"
- In reply to: anonymous_at_discussions.microsoft.com: "Re: IP Filter Order"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Wed, 24 Mar 2004 22:46:54 -0600
I think the one with 80 specified would be the most specific. Ipsec filters
can be more confusing than firewall rules. What are you trying to do? If you
are having problems accessing the internet, you may need to allow outbound
53 udp/tcp for dns. --- Steve
<anonymous@discussions.microsoft.com> wrote in message
news:125c701c4116f$f564ea10$a501280a@phx.gbl...
>
> >-----Original Message-----
> >Ipsec filters are applied in a manner so that specific
> rules override a general
> >rule. In other words a permit port 80 tcp would override
> a general block all
> >rule and allow traffic on port 80 tcp. --- Steve
> Yes, but there also is specific rule
> MyIPAddress:1:TCP:BLOCK
>
> Question is which rule from those two specific are MORE
> specific.
> >
> >
> >"Somo" <hicode@inbox.lv> wrote in message
> >news:f0c101c410e0$463d2eb0$a601280a@phx.gbl...
> >> For example I have IP Filters:
> >>
> >> SOURCE -direction- DESTINATION Protocol Action
> >> Any <-> MyIPAddress Any Block
> >> Any:80 <-> MyIPAddress:Any TCP Permit
> >> Any:Any <-> MyIPAddress:1 TCP Block
> >>
> >> Is it possible to scan MyIPAddress:1 from source port
> 80?
> >>
> >> Scan packets will be:
> >> Any:80 -> MyIPAddress:1 TCP
> >>
> >> so, in what order IP Filters would be applied?
> >>
> >
> >
> >.
> >
- Next message: Steven L Umbach: "Re: VPN Setup"
- Previous message: NETCRAMMER: "Re: Default Directory and File Permissions"
- In reply to: anonymous_at_discussions.microsoft.com: "Re: IP Filter Order"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]