Re: IPsec - locking down Windows 2003

From: Lee Atkinson (leeatkinsonlincs_at_hotmail.com)
Date: 03/25/04


Date: 25 Mar 2004 07:03:31 -0800

Hi Roger

My understanding of the mirrored attribute is that it allows the
'return packets'. Therefore, yes, I do not need to mirror the blocking
of inbound packets.

However, I do need to mirror the acceptable inbound trafffic and
outbound traffic.

But as well as allowing return traffic, would the mirror on the
outbound rule allow newly intitated packets from the outside (as long
as they were coming from the remote host's port 80)?

Many thanks

Lee



Relevant Pages

  • Re: Network guru help sought please
    ... Error: Cannot retrieve repository metadata for repository: fedora. ... When I look with "tcpdump -i eth0" at the packets being sent to the internet, I see that the CentOS mirrorlist ... and the packets are going to a mirror. ... I'm not sure how you conclude that the mirrorlist "is not interpreted" whatever that means, you must have gotten a valid IP from DNS, but the name is truncated or not in DNS properly, or whatever. ...
    (Fedora)
  • Re: Network guru help sought please
    ... mirrorlist and see what IP is being returned by your nameserver. ... fedoraproject.org, rather than any mirror. ... I'll see what tcpdump -n tells me, ... The main problem with tcpdump is that there are millions of packets ...
    (Fedora)
  • Re: Network guru help sought please
    ... fedoraproject.org, rather than any mirror. ... I'll see what tcpdump -n tells me, ... The main problem with tcpdump is that there are millions of packets ... you can use tcpdump and store the packets in a file and have wireshark read te tcpdump file. ...
    (Fedora)
  • [UNIX] IPv4 Forwarding Doesnt Consult Inbound SPD in KAME-derived IPSec
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... of NetBSD and FreeBSD fail to perform inbound policy checks on packets ... inbound packets violated process security policy ... outbound packets violated process security policy ...
    (Securiteam)
  • Updates are locking and blocking users
    ... We use SQL2005 for a while now and we came accross a blocking issue. ... When subsidiaries are resetting their data (UPDATE MainTable set ... As the database is mirrored, we think about updating the mirror ...
    (microsoft.public.sqlserver)