Re: Audit logons from outside local ip range

From: Steven L Umbach (n9rou_at_nospam-comcast.net)
Date: 08/30/04


Date: Mon, 30 Aug 2004 13:48:49 -0500

That can not be done within the operating system. You might be able to implement a
software firewall to track logon attempts from unauthorized IP addresses in the
firewall log. Sygate is free to try and you can install it and disable the firewall
function and use it just for the logging capabilities. You could also use it to allow
or deny traffic based on IP address as you can with Ipsec filtering policy, though
ipsec would not give you the kind of logging you want and is more difficult to
configure rules unless you are using subnets for larger amount of IP addresses as
Ipsec policies do not accommodate IP address ranges. --- Steve

"Matt Landis" <matt(remove)@landiscomputer.com> wrote in message
news:O67LQeqjEHA.1048@tk2msftngp13.phx.gbl...
> Hello,
>
> I know how to setup enabling logging successful and unsuccessful logins.
>
> Is there a way to only log logins if they are not inside a certain range of
> ip addresses?
>
> Thanks!
> Matt
>
>



Relevant Pages

  • Re: Audit logons from outside local ip range
    ... > implement a software firewall to track logon attempts from unauthorized IP ... > address as you can with Ipsec filtering policy, ... > give you the kind of logging you want and is more difficult to configure ... >> I know how to setup enabling logging successful and unsuccessful logins. ...
    (microsoft.public.windows.server.security)
  • Re: IPSEC
    ... There is no way to do general logging with ipsec in Windows 2000. ... offer some logging such as for dropped packets. ... software firewall such as Sygate to have some logging. ...
    (microsoft.public.win2000.general)
  • Re: IPSEC
    ... There is no way to do general logging with ipsec in Windows 2000. ... offer some logging such as for dropped packets. ... software firewall such as Sygate to have some logging. ...
    (microsoft.public.win2000.security)
  • Re: IPSEC
    ... > software firewall such as Sygate to have some logging. ... Ipsec is not meant to be a first line internet ... One weakness of a packet filtering firewall is that due to the ...
    (microsoft.public.win2000.security)
  • Re: IPSEC
    ... > software firewall such as Sygate to have some logging. ... Ipsec is not meant to be a first line internet ... One weakness of a packet filtering firewall is that due to the ...
    (microsoft.public.win2000.general)