I have a few dumb questions



I'm learning about IPSec right now. I'm also learning that if I enable IPSec
on my DC and other machines in the domain, they can communicate just fine...
but if I disable IPSec on the DC and then on the other machines in the
domain, they cannot talk to each other anymore. I forced a policy refresh,
rebooted the computers, cleared the caches, everything I could think of. I'm
apparently missing a step even though I can visually verify that IPSec
policies are disabled on all machines in the domain. What am I doing wrong?

It's like the filters are still in place.

Thanks for any help you can give!


.



Relevant Pages

  • Re: Should I install Certificate Authority to solve these problems ?
    ... You can use IPsec with or without certs from your PKI. ... negotiations to your AD machines or those trusting the ... > In the item 1 below, the tool in use is a HP server management tool (type ... >>> Management is pushing to get Certificate Authority ...
    (microsoft.public.win2000.security)
  • Help! ipsec not talking IKE
    ... I'm trying to get ipsec working. ... host-to-host setup, with a PSK going as a test/proof of concept. ... machines are on the same subnet, but to avoid interfering with what's ...
    (comp.os.linux.security)
  • Re: IPSEC config
    ... spdadd 10.20.30.0/24 172.28.56.0/23 any -P out ipsec ... 15:24:18.927721 sunburn> acesfbsd: icmp: echo request ... fxp0: flags=8943mtu ... Then I have two machines on these nets that have routing pointing to ...
    (FreeBSD-Security)
  • Re: I have a few dumb questions
    ... on my DC and other machines in the domain, ... but if I disable IPSec on the DC and then on the other machines in the ... I forced a policy refresh, ... apparently missing a step even though I can visually verify that IPSec ...
    (microsoft.public.cert.exam.mcsa)
  • Re: Restrict Access to Domain Servers from Workgroup Computers
    ... client workstation not related to who is logged in. ... When you mention use of IPsec you identify the one current way ... disallowed to machines not allowed to access the shares (i.e. ...
    (microsoft.public.win2000.group_policy)

Loading