IPSec Question

From: MikeD (madienes_at_hotmail.com)
Date: 05/28/04


Date: Fri, 28 May 2004 12:01:21 -0700


Hi,

I have been messing around on a test server looking into
IPSec and ran into somewhat of an issue.

First I created an implicit deny rule for all
inbound/outbound traffic, I then proceeded to create an
allow rule for anything on our network using a 16-bit
mask. e.g. Allow 192.168.0.0 255.255.0.0 but IPSec came
back with an error saying IP Address did not match the
mask.

My gut is telling me that IPSec only allows 24-bit IP's
to be defined and not 16, is that the case or am I just
doing something wrong?

Thanks, Mike.



Relevant Pages

  • Re: IPSec Question
    ... >From my testing it seems that ipsec policies demand the proper subnet mask ... for the network type - A, B,or C. --- Steve ... > IPSec and ran into somewhat of an issue. ... > First I created an implicit deny rule for all ...
    (microsoft.public.win2000.security)
  • Re: Access Denied with an external Trust
    ... I remember messing with IPsec is there a way to turn it off, ... option Do not use IPSEC under the TCP/ip Properties but still the same. ... >> incompatible security options such as ipsec negotiation policies, ...
    (microsoft.public.win2000.security)