Re: IPsec - locking down Windows 2003

From: Lee Atkinson (leeatkinsonlincs_at_hotmail.com)
Date: 03/25/04


Date: 25 Mar 2004 07:03:31 -0800

Hi Roger

My understanding of the mirrored attribute is that it allows the
'return packets'. Therefore, yes, I do not need to mirror the blocking
of inbound packets.

However, I do need to mirror the acceptable inbound trafffic and
outbound traffic.

But as well as allowing return traffic, would the mirror on the
outbound rule allow newly intitated packets from the outside (as long
as they were coming from the remote host's port 80)?

Many thanks

Lee



Relevant Pages

  • [UNIX] IPv4 Forwarding Doesnt Consult Inbound SPD in KAME-derived IPSec
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... of NetBSD and FreeBSD fail to perform inbound policy checks on packets ... inbound packets violated process security policy ... outbound packets violated process security policy ...
    (Securiteam)
  • Updates are locking and blocking users
    ... We use SQL2005 for a while now and we came accross a blocking issue. ... When subsidiaries are resetting their data (UPDATE MainTable set ... As the database is mirrored, we think about updating the mirror ...
    (microsoft.public.sqlserver)
  • Re: configuring IPsec without IKE -problems
    ... Watch your manual keys. ... authkey 123456780123456789abcdeffedcba9876543210 ... # for outbound packets ...
    (comp.unix.solaris)
  • Reading outbound packets to datalink layer using C sockets API - how?
    ... I've recently written a packet dump program that logs all the inbound packets ... to my server using a socket created using the following call: ... This works fine but my problem is that this socket only receives packets ...
    (comp.os.linux.networking)