RE: Configuring Port range in IPsec

From: Andras (Andras_at_discussions.microsoft.com)
Date: 01/10/05


Date: Mon, 10 Jan 2005 05:11:04 -0800

The purpose of this filtering is to setup a secured network for backups.
So batch programs has to pass this filter without authentifications in order
to backup their data. Server has 3 network cards and one of them needs to be
secured.

Would it be better to use certificate based authentification ?

"Andras" wrote:

> We would like to add a rule to the IPsec config with the following
> specification
> Ports from 10000-20000 are open for all connections from segment 10.4.90.*
> Ports from 0-10000 are closed for all connections from segment 10.4.90.*
>
> I don`t see anything in the configuration possibilities indicating that we
> can specify a port range and a specify a segment.
>
> How can I configure this roule in IPsec or some whereelse on windows 2000
> advanced server ?