IPsec - locking down Windows 2003

From: Lee Atkinson (leeatkinsonlincs_at_hotmail.com)
Date: 03/22/04


Date: 22 Mar 2004 05:20:34 -0800

Hi - I want to lock down a Windows 2003 server using IPsec. Basic
setup is to have two filters and rules:
  - mirrored, all traffic from any address to my address - deny
  - mirrroed, all TCP traffic from any address to my address, port 80
- allow

This workd fine, then to allow to connect to websites on the server
itself, i set the filter and rule:
  - mirrored, all traffic from my ip address to any address, port 80 -
allow

This all works, but would this allow people to connect to the server
from their port 80?

Many thanks



Relevant Pages

  • Re: TS & Outlook (& DNS) related questions on new Win2k3 r2 server setup/install
    ... I had the WAN cable in port 1, a PC in port 2, & the ... The server is definitely not on the WAN port. ... router or a configuration port. ... I'll try this after I get the server setup complete. ...
    (microsoft.public.windows.server.setup)
  • Re: cannot connect to /remote externally
    ... Les Connor [SBS MVP] ... account to a static IP account, or use another port for the server. ... > does not work for the Default Website setup in IIS. ...
    (microsoft.public.windows.server.sbs)
  • Re: cannot connect to /remote externally
    ... account to a static IP account, or use another port for the server. ... Les Connor [SBS MVP] ... does not work for the Default Website setup in IIS. ...
    (microsoft.public.windows.server.sbs)
  • Re: TS & Outlook (& DNS) related questions on new Win2k3 r2 server setup/install
    ... I had the WAN cable in port 1, a PC in port 2, & the ... The server is definitely not on the WAN port. ... router or a configuration port. ... I'll try this after I get the server setup complete. ...
    (microsoft.public.windows.server.setup)
  • Re: Port Forwarding?
    ... Here is my current setup at home. ... It is my understanding that I must setup a port forward on my router to be ... The term "Virtual Server" is D-Link speak for port forwarding. ... VNC, in its many different brands, is a remote desktop type product. ...
    (microsoft.public.windowsxp.network_web)