Firewall GPO question

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



I disable the windows firewall when machines are connected to the domain. I
do this via Computer Config -> Admin Templates -> Network -> Network
Connections -> Windows Firewall -> Domain Profile -> and disable "Windows
Firewall: Protect all network connections".
For laptops I enable the firewall through the Standard Profile so that the
firewall is active on laptops when not connected to the domain.
My question is how to allow administrative access to the remote laptopsl
when they are connected via VPN. The Standard Profile settings apparently are
in effect even after a remote laptop connects via VPN, so the firewall is
blocking the access. I need to be able to access the machines through SMS
remote control, Symantec System Center, Computer Management, etc.
I did try adding the local subnet and my internal IP range to the "Allow
remote administration exception" under the Standard Policy. My thinking was
that when connected via VPN the remote machine is on my local subnet and
adminstrative access would be allowed. That wasn't the case...still no admin
access.
Thanks
.



Relevant Pages

  • RE: Firewalls on VPNs - Best Practice Advice
    ... Please help me know if you want to make the IT person manage the remote DC ... | previously been advised that Firewalling VPN ... | connections is not recommended, I've turned off Windows Firewall ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: cant access server via remote desktop
    ... > into the Remote Desktop window when attempting to connect. ... >> while on the VPN is "The client could not connect to the remote computer. ... >> Remote connections might not be enabled or the computer might be too busy ... >> when I am not on the VPN and am inside the firewall. ...
    (microsoft.public.windows.server.networking)
  • Remote Desktop Connection No Longer Works
    ... but it is sooooooo slow at times that I decided to try RDC). ... Remote connections might now be enabled or the computer might be too busy to ... I have checked the firewall settings on the remote computer and they were ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Here is a challenge for someone really smart: I Cannot connect using Remote Desktop..please help
    ... At work--any chance they have a firewall which controls outbound activity? ... > 1)Remote connections might not be enabled at the remote computer ... > Please keep in minds the following things, I have remote access ...
    (microsoft.public.windowsxp.work_remotely)
  • Re: What is the Pattern here ?
    ... These are all Dialup Connections that I had no connection with at the time. ... It's obviously an enormous security hole, ... > and a real firewall box. ...
    (comp.security.firewalls)