RRAS - Netsh parameter issues

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance



Hi Guys

I need to configure about 70 + servers with RRAS. These servers are
going to be NAT boxes and will only allow certain kinds of traffic to
certain IP's. I am using the following Netsh command

netsh rout ip add filter name="external" filtertype=input
srcaddr=10.0.3.16 srcmask=255.255.255.0 dstaddr=10.0.28.16
dstmask=255.255.255.0 proto=any
netsh rout ip add filter name="external" filtertype=output
srcaddr=10.0.28.16 srcmask=255.255.255.0 dstaddr=10.0.3.16
dstmask=255.255.255.0 proto=any

What I am expecting it to do is to allow all traffic from ip 10.0.3.16
to 10.0.28.16.

However what happens is that it actuallied denies this specifically and
allows everything else but this. If I go into the RRAS Admin GUI it
says Recieve all packedts except those that meet the criteria below. I
have to then check the box that says Drop all packedts except those
that meet the criteria below.

Is there any way to fix my netsh command in the first place so that I
do not have to go into the GUI and check that box. I.e. is there any
way to have the Drop all packedts except those that meet the criteria
below box checked using the netsh command

Any help would be greatly appreciated

.



Relevant Pages

  • Re: Problems with having 1 domain, 2 sites and site-site vpn with isa 2004
    ... There's an RRAS hotfix that's possibly related: ... 834108 Routing and Remote Access stops responding when you use the Routing ... > disconnections etc. etc. on 1 or even both servers the rras services ...
    (microsoft.public.isaserver)
  • Re: DHCP issuing 2 or more to clients/servers
    ... All of these PCs and servers I setup from scratch. ... I don't even look at RRAS ... If you are saying that you are finding your machines to have RRAS service ...
    (microsoft.public.windows.server.networking)
  • Internal NIC weird after reconfig of RRAS server. Desperate!!
    ... let's VPN traffic through to the external nics of the VPN servers. ... IAS) on the internal LAN, and the checkpoint lets this through from the ... When I restarted the RRAS ...
    (microsoft.public.win2000.ras_routing)
  • Re: I am seeing automatic IPs in my DNS that I cant find
    ... I did look at the RRas servers and I didn't find the IP. ... config so I have also tried flushing DNS on each server also. ... Private Network Interfaces on a Domain Controller Are Registered in DNS ...
    (microsoft.public.windows.server.dns)
  • Re: Strange parent Domain host record
    ... Usually from RRAS -- either VPN or Dial interface which was ... [phone number on web site] ... I am the only admin with access to these servers. ...
    (microsoft.public.windows.server.dns)