Re: Limit Access using Firewall settings

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



On Fri, 29 Jul 2005 07:51:09 -0700, "Jwpcamp"
<Jwpcamp@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote:

>Chuck,
>I want the system sharing ( we'll call this the router) the internet
>connection to only be able to connect to the MS update and antivirus sites as
>well as allow all of the other systems behind the router to access only the
>defined sites for updates. The computers behind the router will not be static
>. I want to be able to pull all of the updates down to the systems behind the
>router without having a chance to expose them to the network before all of
>the patches are applied. The router can be the filter for allowing the MS
>update and Antivirus sites to be accessible to the other systems. I do not
>want the systems behind the router to be able to access anything else but
>these update sites. The systems behind the router are not part of a domain
>and these are all windows systems. I have not setup a system as of yet to be
>the router so any suggestions would be appreciated

OK, so what you're setting up is a quarantine LAN, for all computers. You need
a router that will block all traffic except specific domains or subnets.

I don't think that this is a Windows XP issue. I think you'll get better
answers in comp.security.firewalls, or maybe BBR Security:
<http://www.dslreports.com/forum/security>.

I personally would get a NAT router that will do "deny all" then "allow only"
rules, and setup rules for the specific sites. The folks in the forums may have
better ideas.

--
Cheers,
Chuck, MS-MVP [Windows - Networking]
http://nitecruzr.blogspot.com/
Paranoia is not a problem, when it's a normal response from experience.
My email is AT DOT
actual address pchuck mvps org.
.



Relevant Pages

  • Re: Limit Access using Firewall settings
    ... >>well as allow all of the other systems behind the router to access only the ... >>and these are all windows systems. ... > OK, so what you're setting up is a quarantine LAN, for all computers. ... and setup rules for the specific sites. ...
    (microsoft.public.windowsxp.network_web)
  • Re: How many are still using OS 9?
    ... > My wife and son already have 2 Windows systems that are talking to ... and Linux machines all using a common router. ... Routers work on ... positively NO special software is required for ANY ...
    (comp.sys.mac.system)