Assistance Setting up IP Filtering in a 2003 Routing Remote Access Server



Hi,

I'm looking to setup IP filtering on both internal and external NICs to cut
down on the amount streaming video/music traffic occuring in the office on
non-standard ports. Here is the current setup:
Routing server: Windows 2003 server standard w/two NICs on external to a T-1
router and one to the internal network 192.168.100.x

The following services will need to be able to route to the internet and are
already setup in the firewall:
2x DNS servers (192.168.100.105, .106) requesting DNS queries from our two
external DNS servers (port 53 UDP queries?)
2x IIS servers (192.168.100.117, .116) TCP 80, TCP 21, TCP 20, TCP 443
1x Exchange server (192.168.100.108) TCP 443, 80, 25, 110, 143

Workstation Internet Access:
(192.168.100.x 255.255.255.0) TCP 80, TCP 21
I don't think DNS port 53 is need here because they will be communicating
w/the AD DNS servers internally.

I've tried setting it up in the past myself but it ends up never working
properly and I'm confusing myself with the inbound filter on the external is
actually the outbound of the internal NIC and such. Also the server routing
is attached to the AD network so it will also have to have thouse ports
opened to it on the internal NIC.

Any help how how to set this up would be great. TIA. Nate


.



Relevant Pages

  • Re: ConnectComputer Problem
    ... modem plugs into the linksys router and the router connects the internet to ... the server internal nic with a generic setting of 192.168.16.2. ... NICs ... Add the ConnectComputer server's IP address or FQDN to the ...
    (microsoft.public.windows.server.sbs)
  • Re: ConnectComputer Problem
    ... name (not one that you use to connect the server from a remote location, ... NICs ... Add the ConnectComputer server's IP address or FQDN to the ... Start Internet Explorer. ...
    (microsoft.public.windows.server.sbs)
  • Re: No internet access thru SBS
    ... ANY pc / server connected to the internet should have two NICS. ... Re running internet connection wizard, ...
    (microsoft.public.windows.server.sbs)
  • Re: 2 NICs Configuration Problem
    ... the server as Paul envisaged it. ... gateway (to the Internet through the NIC connected to the Sonicwall DMZ ... NICs should not have default gateways configured for both. ... DMZ ports of any firewall, is an alternative path that cause great ...
    (microsoft.public.windows.server.networking)
  • Re: For anyone interested in blocking nameserver lookups to sites
    ... > 8.2.x series name server and a semi-current version of RedHat Linux. ... > The first thing that you need to do is setup the start of the named.conf ... > zone "doubleclick.net" in { ... > however you can go into Internet Options -> Advanced tab and turn off ...
    (comp.os.linux.security)

Loading