happispider
asked on
How to open ports on Win2k Server
I have a routing setup with Windows 2000 Advanced Server. On the computers behind this router, (using the router as their gateway) all ports are closed so I can't get incoming connections. Should I use VPN or make a new connection in My Network Places, or should I enable Demand Dialing in Routing and Remote Access?
I know how to open ports with Internet Connection Sharing but can't find a way to do this with the built in Network Manager.
I know how to open ports with Internet Connection Sharing but can't find a way to do this with the built in Network Manager.
You will want to use IPSec to lock down (filter) specific ports.
Here is a helpful link - http://support.microsoft.com/default.aspx?scid=kb;en-us;813878
Here is a helpful link - http://support.microsoft.com/default.aspx?scid=kb;en-us;813878
To add or block a specific port is about half way down the page.
ASKER
I could kindof understand the article but I need to reread it. Can u tell me though how to allow access on ports? Do I just replace BLOCK with ALLOW? I opened IPSec in MMC console and fooled with it a bit nothing seemed to work.
I also tried deleting HKEY_LOCAL_MACHINE/System/ Policies/I PSec or something like that with no luck (I didn't expect luck there)... I have a connection to Internet on 192.168.1.107 and a connection to LAN (192.168.2.108) on the multihomed computer... Could you give me an example command for IPsecpol or directions thru an MMC console because [for now] I'm a bit confused.
The article said to use IPSecpol so I probably need to learn more about it, but if there's another way besides ICS, like working thru MMC or regedit that'd be great.
I guess I'll try to be a bit more specific on exactly what I've tried lateron... thanks for help
I also tried deleting HKEY_LOCAL_MACHINE/System/
The article said to use IPSecpol so I probably need to learn more about it, but if there's another way besides ICS, like working thru MMC or regedit that'd be great.
I guess I'll try to be a bit more specific on exactly what I've tried lateron... thanks for help
ASKER
Looks like I simply had to use NAT routing's 'special ports' feature. I'm almost happy with this router setup, but it'd be great if I could open more ports than just the ones I specify. Is that related to IPSec? I thought IPSec just blocked access. Can IPSec also allow access to a port (without help from NAT)??
ASKER CERTIFIED SOLUTION
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
ASKER
: () ->help!