I closed my own door with IPSec

From: Markus Mühlich (markus.muehlich_at_newsgroups.nospam)
Date: 09/16/04


Date: Thu, 16 Sep 2004 09:33:40 +0200

Hi,

yesterday I created two (only this two) IPSec rules on a Server:

1. Inbound Traffic
Mirrored: Yes
Action: Block
Protocol: Any
Source Port: Any
Dest. Port: Any
Source Address: Any
Dest. Address: Me

2. Remote
Mirrored: Yes
Action: Permit
Protocol: TCP
Source Port: 3389 (****)
Dest. Port: 3389
Source Address: Any
Dest. Address: Me

**** It's well known to me that this is not correct, but currently the
dinner is served. Unfortunatelly I cannot connect from my RemoteDesktop
Client to this server, because the server accepts only traffic from source
port 3389. How can I convince my RemoteDesktopClient to connect from
outgoing Port 3389 to this best know secured server ;-)?

Thanks for any help.

Best regards
Markus



Relevant Pages

  • Re: "Opening ports"
    ... When filtering log on port 5656, ... Create Protocol: ... Understanding the ISA 2004 Access Rule Processing ... Microsoft Internet Security & Acceleration Server: ...
    (microsoft.public.isa)
  • Re: SBS2003, Terminal server and Mobile 6
    ... RRAS as Firewall) and SBS 2K3 Premium: ... in order for a custom protocol to be considered a "Server" ... In the ''Policy Elements'' branch of ISA server mmc, ... Next...Enter the destination port number for the custom protocol being ...
    (microsoft.public.windows.server.sbs)
  • Re: not what Im after
    ... Users A, B, and C have to be listening to a port to get a message over that ... proxy server between then, then the proxy server actually "owns" the IP ... Will you be using an established protocol or are you writing your own? ... "Advanced .NET Remoting" by Ingo Rammer. ...
    (microsoft.public.dotnet.languages.csharp)
  • RE: Port Forwarding
    ... RRAS as Firewall) and SBS 2K3 Premium: ... in order for a custom protocol to be considered a "Server" ... In the ''Policy Elements'' branch of ISA server mmc, ... For example, for Terminal Server, the port number would be 3389. ...
    (microsoft.public.windows.server.sbs)
  • RE: Some technical errors
    ... If the SMTP server is not running on port 25 TCP it is not a public ... Manager - Computer Assurance Services BDO Chartered Accountants & ...
    (Security-Basics)