Re: securing windows2000 server on my LAN



Sure an ipsec policy can help. You can specify the IP addresses of the
remote computers that can access it for specific ports/protocols. You can
also use kerberos, certificate, or preshared key as forms of computer
authentication. The link below explains more on the basics if ipsec. ---
Steve

http://www.microsoft.com/technet/security/topics/architectureanddesign/ipsec/ipsecapa.mspx
http://support.microsoft.com/?kbid=254949 --- important information to
know before you implement ipsec in a domain.

"adesai" <adesai@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:F6A0D7E3-5BE8-4F04-8B2A-3704D939693B@xxxxxxxxxxxxxxxx
I have Windows 2000 Server with SQL daatbase and erp application , how can
i
secure so that only few users can access in terms through network, ping.
Is there any way by which IPSEC can help me and wht configuration i need
to
do.


.



Relevant Pages

  • Re: Configuring Port range in IPsec
    ... IPSec is intended to validate traffic between two trusted peers, ... each port (what did you want for ports 20k-64k?) both tcp and udp. ... > Ports from 10000-20000 are open for all connections from segment 10.4.90.* ... > can specify a port range and a specify a segment. ...
    (microsoft.public.win2000.security)
  • Re: IPSEC on two different NICs
    ... Johnny ... >You can't specify the NIC exactly - you have to configure ... >IPSec rules will allow only inbound HTTP on NIC1 but will ... >Ian Hellen ...
    (microsoft.public.win2000.security)
  • Re: IPSec
    ... >In the Local Security Policy utility, ... destination, specify the ... >> I am trying to bind ipsec to one interface in Win2k Pro. ...
    (microsoft.public.win2000.security)
  • Re: IPSec
    ... In the Local Security Policy utility, create a new IPSec policy. ... than specify "My IP Address" as the source or destination, ... > I am trying to bind ipsec to one interface in Win2k Pro. ...
    (microsoft.public.win2000.security)
  • Re: IPSEC on two different NICs
    ... You can't specify the NIC exactly - you have to configure the IPSec ... will fire before the any port block rule. ... > pointing inside to our LAN with IPSEC and one NIC pointing ...
    (microsoft.public.win2000.security)