Re: How can I block port 1025?

From: Steven L Umbach (n9rou_at_n0-spam-for-me-comcast.net)
Date: 08/26/04


Date: Thu, 26 Aug 2004 19:45:47 GMT

Is each machine configured individually or do they have the same policy applied via
Group Policy? Netdiag /test:ipsec /v will display the filter on a W2K computer. You
may want to make sure they match up to computers that show a different result.
Gpresult /v can also help if you are in a domain to track down where policy is being
applied from for the computer. --- Steve

"Chris" <anonymous@discussions.microsoft.com> wrote in message
news:0b3b01c48b7b$36eb3900$a401280a@phx.gbl...
>I am using IPSEC as my firewall, and even after adding
> port 1025 to my block list, it still shows up as being
> open. I use Harris STAT to scan my systems. The port shows
> closed on all of my other machines, but not on one. I am
> using the same IPSEC policy on each of my machines. Does
> anyone have a suggestion for me?
>
> Thanks,
> Chris



Relevant Pages

  • Re: [RE: Access to well-known ports on Win2K]
    ... communication typically uses the ephemeral port range. ... policy - works for all users of the machine; and can allow or block access ... many routes for deployment as you mention: Group Policy; Local Security ... > IPSec Policy Agent service then the IPSec policy is no longer active. ...
    (Focus-Microsoft)
  • RE: [RE: Access to well-known ports on Win2K]
    ... destination port and ANY source port. ... > policy - works for all users of the machine; ... > Local Security ... >> could use an IPSec policy and deploy to all users to block ...
    (Focus-Microsoft)
  • Re: Restricted Groups Not Working
    ... 2:Please bear in mind that 90% of the policy is applying it only seems to be the restricted groups section that isnt taking effect and 'allow to load and unload device drivers' which also doesnt seem to be working. ... Also all machines are running SP2 and with the latest hotfixes as provided by our SUS server. ... When adding users to the "Administrators" group, remember that you can't browse for that group, you have to type "Administrators". ... In the "Members of this group", browse for the "Global Security Group" created in Step 1. ...
    (microsoft.public.windows.group_policy)
  • Re: Restricted Groups Not Working
    ... Have you tried running the GPMC's "Group Policy ... Also all machines are running SP2 and with the latest hotfixes as ... are all the machines (desktops and laptops) running XP ...
    (microsoft.public.windows.group_policy)
  • Re: Machine Policy not being applied
    ... Is this software installed everywhere or just on a few machines? ... settings that applies everywhere. ... >> The bottom line is that the computer account does not have permissions to ... >> read/apply the policy like they do with the Default Domain Policy. ...
    (microsoft.public.win2000.group_policy)