Solved

Best Win Server 2003 R2 Firewall Opton and how to enable for Domain properly

Posted on 2014-09-30
7
166 Views
Last Modified: 2014-10-19
Have a Win Server 2003 R2 that has Symantec Endpoint Protection Cloud (SEP) SBS 2013 installed on it.

This version of the product, for Servers does not have a Firewall but has below modules for Win Server

Network: Intrusion Protection
Computer: Anti Virus, Anti Spyware, Sonar
Web: Download Intelligence

Have a Hardware Firewall protecting the network but want to find the best option for adding a software firewall on the Win Server 2003 Domain Controller.

I do not have much experience turning on the Win Firewall for Win Server 2003 in Domain.  When I go to Control Panel and click on Windows Firewall, I see the location to turn on the Windows Firewall in General tab and understand the Exceptions and Advanced tab.

But on this Win Server 2003 it says "Windows Firewall: Is using your non Domain Settings".

When I turned it on, then none of the desktops, on the Domain, could login.  

So it seems, I need to do configure the Windows Firewall, in a special way for Domain?  How would I do this?  

The Windows resource sites have tons of info. but no simple explanation on this that I could find.

Thanks in advance for tips and help.

Also, 3rd party good Firewall programs that would work well on Win Server 2003 would be considered but not sure which are the best standalone ones that work well in Win Server 2003.

Thanks
0
Comment
Question by:rdwolf
7 Comments
 
LVL 38

Expert Comment

by:Hypercat (Deb)
Comment Utility
I haven't used this Symantec product, but the literature states that it does include a firewall.  Are you sure that the firewall isn't installed?  All of the other Symantec Endpoint Protection (on-premises) products I've used include the firewall as an option.  This normally shows up in the client status screen as "Network Threat Protection." The fact that you see Network: Intrusion Protection listed indicates that at least a portion of the firewall protection is installed.
0
 
LVL 25

Expert Comment

by:DrDave242
Comment Utility
I'm with hypercat: Symantec Endpoint Protection always includes a firewall, in my experience.

I would not recommend using the built-in Windows firewall on a Windows Server 2003 domain controller. You have to open so many ports for it to function as a DC that your firewall ends up looking more like a screen door than a wall.
0
 

Accepted Solution

by:
rdwolf earned 0 total points
Comment Utility
For SEP.cloud SBS it only has a firewall option for non servers.  This is confirmed with their tech. Support.  The standalone SEP has firewall for server only.  So still need more help
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 
LVL 23

Assisted Solution

by:Dirk Kotte
Dirk Kotte earned 500 total points
Comment Utility
you should consider to replace the Windows2003 Server with Win2008R2 or Win2012.
This versions keep supported some time and has included a great and usable firewall.
0
 

Assisted Solution

by:rdwolf
rdwolf earned 0 total points
Comment Utility
Planning on that before July 2015 but that is not an option now.

Any suggestions on 3rd party  firewalls for Win server 2003 anyone?
0
 

Assisted Solution

by:rdwolf
rdwolf earned 0 total points
Comment Utility
Have not received any  info. on original question.  Last asked this same question on 10/1/14: "Any suggestions on 3rd party  firewalls for Win server 2003 anyone?"
0
 

Author Closing Comment

by:rdwolf
Comment Utility
Never got answers to my original question.
0

Featured Post

Complete VMware vSphere® ESX(i) & Hyper-V Backup

Capture your entire system, including the host, with patented disk imaging integrated with VMware VADP / Microsoft VSS and RCT. RTOs is as low as 15 seconds with Acronis Active Restore™. You can enjoy unlimited P2V/V2V migrations from any source (even from a different hypervisor)

Join & Write a Comment

So you have two Windows Servers and you have a directory/folder/files on one that you'd like to mirror to the other?  You don't really want to deal with DFS or a 3rd party solution like Doubletake. You can use Robocopy from the Windows Server 200…
Learn about cloud computing and its benefits for small business owners.
Illustrator's Shape Builder tool will let you combine shapes visually and interactively. This video shows the Mac version, but the tool works the same way in Windows. To follow along with this video, you can draw your own shapes or download the file…
This video shows how to remove a single email address from the Outlook 2010 Auto Suggestion memory. NOTE: For Outlook 2016 and 2013 perform the exact same steps. Open a new email: Click the New email button in Outlook. Start typing the address: …

762 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

10 Experts available now in Live!

Get 1:1 Help Now