Re: IPsec - locking down Windows 2003
From: Roger Abell (mvpNOSpam_at_asu.edu)
Date: 03/24/04
- Next message: S. Pidgorny
: "Re: Stolen server with Windows 2003" - Previous message: Michael A. Covington: "Re: Stolen server with Windows 2003"
- In reply to: Lee Atkinson: "IPsec - locking down Windows 2003"
- Next in thread: Lee Atkinson: "Re: IPsec - locking down Windows 2003"
- Reply: Lee Atkinson: "Re: IPsec - locking down Windows 2003"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Tue, 23 Mar 2004 23:21:26 -0700
I would not care what port they originate from, but that they
are inbound to port 80 of IPs bound to web content.
You may want to examine whether you really do want to
have all of the rules mirrored as you have outlined.
Example. Block all is mirrored whereas block all inbound
unmirrored is sufficient. You also have not mentioned rules
to allow such as NTP 123, SMTP, DNS, . . .
-- Roger Abell Microsoft MVP (Windows Server System: Security) MCSE (W2k3,W2k,Nt4) MCDBA "Lee Atkinson" <leeatkinsonlincs@hotmail.com> wrote in message news:ab5f9e77.0403220520.6cb4516@posting.google.com... > Hi - I want to lock down a Windows 2003 server using IPsec. Basic > setup is to have two filters and rules: > - mirrored, all traffic from any address to my address - deny > - mirrroed, all TCP traffic from any address to my address, port 80 > - allow > > This workd fine, then to allow to connect to websites on the server > itself, i set the filter and rule: > - mirrored, all traffic from my ip address to any address, port 80 - > allow > > This all works, but would this allow people to connect to the server > from their port 80? > > Many thanks
- Next message: S. Pidgorny
: "Re: Stolen server with Windows 2003" - Previous message: Michael A. Covington: "Re: Stolen server with Windows 2003"
- In reply to: Lee Atkinson: "IPsec - locking down Windows 2003"
- Next in thread: Lee Atkinson: "Re: IPsec - locking down Windows 2003"
- Reply: Lee Atkinson: "Re: IPsec - locking down Windows 2003"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|