Win2k3 Server Enterprise Edition and IPSec

From: Frank T. Lee (Lee_at_discussions.microsoft.com)
Date: 10/27/04


Date: Wed, 27 Oct 2004 05:43:01 -0700

I am hoping someone can help me. I am trying to use IPSec to only allow RDP
(Port 3389) and deny all other IP traffic on a Win2k3 Server. The first
policy that I setup is the one for RDP. Everything still works at this
point. I then setup a policy to deny all IP traffic. Once this policy is
established, I can no longer RDP to the server.

This is exactly the way we have it setup on WinXP machines and it works.
Does anyone know what may be wrong?

Thanks,

Frank T. Lee



Relevant Pages

  • RE: Group policy help needed!!!
    ... Make sure an administrator other than your self did not setup a deny ... True if you setup a policy to apply to all systems within an OU, ... It is *technically* true that any server in the corresponding OU should ...
    (Focus-Microsoft)
  • Stop users being able to RDP to DC
    ... My current setup allows users within the AD to RDP to the DC. ... user assigned to login to the domain. ... kaotix's Profile: http://forums.techarena.in/members/kaotix.htm ...
    (microsoft.public.windows.server.sbs)
  • How can I prevent a TS user from TS or RDP to another server?
    ... How can I prevent a TS user from TS or RDP to another server? ... Users log into my organization via VPN. ... They are setup on the VPN ...
    (microsoft.public.win2000.security)
  • Force to use only one application after logon via RDP
    ... I want to force a user working via RDP to use only one ... this application need administrative access to work (yes, ... My domain is based on Windows 2003 STD, ... Those policy are useful when applied to user who have administrator ...
    (microsoft.public.windows.terminal_services)
  • Re: Event error 1202, Security policies were propagated with warning. 0x4b8
    ... I am using gpupdate /force to ... >update the policy through RDP on the local box- the problem is when I ... >update the policy manually it breaks user folder permissions on my web ...
    (microsoft.public.windows.group_policy)