Re: IP IPSEC Policy blocking ping



The link below may help and be sure to read the link in the article on
dynamic RPC and how you can do a registry mod to limit the ports that it
uses. Keep in mind that you can not use ipsec between domain members and
domain controllers if you are using an Active Directory domain. If you are
not going through firewalls then it usually is best to configure ipsec to be
used for all traffic between computers and will greatly simplify and rules.
If you are going through firewalls consider using a VPN connection through
the firewall and then you can use ipsec between the VPN server and end
computer if need be. --- Steve

http://support.microsoft.com/default.aspx?scid=kb%3Ben-us%3B179442
http://support.microsoft.com/?kbid=254949 --- ipsec considerations for
domain computers

"Zakir" <ZakirD@xxxxxxxxx> wrote in message
news:1143147576.550521.144830@xxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx
Another question: from what I am reading, NTLM authentication seems to
use a random port? Is this true? Is there a way to allow it through
IPSEC or do I need to set it to a static port in the registry first?



.



Relevant Pages

  • Re: Login users
    ... It is trying to connect to registry ... on other computers and sometimes people have firewalls etc.. ... have posibility to check directly from Domain controler. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Isolate systems
    ... If you have access to the firewall, you might be able to configure what IP ... filtering policy on your computers which is a policy that uses rules with ... Ipsec policies are best when trying to configure for a subnet ... network layout you may be able to implement ...
    (microsoft.public.win2000.security)
  • Re: Isolate systems
    ... You also may want to download the " Securing Windows 2000 Server Security ... to use ipsec "filtering" policies to secure domain controllers and other ... >> filtering policy on your computers which is a policy that uses rules with ...
    (microsoft.public.win2000.security)
  • Re: Green Admin - Brute Force Attack - Pls Help
    ... Ipsec configuration is very similar [if ... specifics on how to use ipsec "filtering" policy to protect computers. ... is managing a network - particularly one in a hostile environment. ...
    (microsoft.public.security)
  • Re: Preventing PCs from accessing the network
    ... Ipsec policies can be used to prevent non domain computers from accessing domain ... resources if the resource computer has a "ipsec require" policy. ... or port isolation. ...
    (microsoft.public.win2000.networking)