Security Basics mailing list archives

RE: Win IPTables?


From: "Roger A. Grimes" <roger () banneretcs com>
Date: Tue, 27 Apr 2004 19:34:37 -0400

How about using W2K3's built-in Internet Connection Firewall?  It can't block outbound connections, but does a fairly 
good job of blocking unrequested inbound traffic.

Roger

***************************************************************************
*Roger A. Grimes, Computer Security Consultant 
*CPA, CISSP, MCSE: Security (NT/2000/2003/MVP), CNE (3/4), A+
*email: roger () banneretcs com
*cell: 757-615-3355
*Author of Malicious Mobile Code:  Virus Protection for Windows by O'Reilly
*http://www.oreilly.com/catalog/malmobcode
*Author of upcoming Honeypots for Windows (Apress)
****************************************************************************


-----Original Message-----
From: Matthew Kemp [mailto:mkemp () depaul edu] 
Sent: Tuesday, April 27, 2004 12:51 PM
To: Benoni.MARTIN () libertis ga; security-basics () securityfocus com
Subject: Re: Win IPTables?

Benoni,

  You can use ipsec, but beware that the processing is quite different as it goes in order from least specific to most 
specific (or visa versa have to check the writeup I made).  Also you need to grab the command line tool from ms's site.

Matthew P Kemp
LAN/WAN Integrator


Bénoni MARTIN <Benoni.MARTIN () libertis ga> 4/27/2004 9:34:57 AM >>>
Hi community,

I have been trying to find out if there was an equivalent of iptables under a Windows box.

I have an Windows 2003 box, with an IIS and an SQL Server 2000 running on it (I know it would be better to set that up 
on two different machines, but well... :) ), and I was wondering how to secure it with a personal FW.

Any idea will be welcomed!

Cheers!


---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off any course! All of our class sizes are 
guaranteed to be 10 students or less to facilitate one-on-one interaction with one of our expert instructors.
Attend a course taught by an expert instructor with years of in-the-field pen testing experience in our state of the 
art hacking lab. Master the skills of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------



---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off 
any course! All of our class sizes are guaranteed to be 10 students or less 
to facilitate one-on-one interaction with one of our expert instructors. 
Attend a course taught by an expert instructor with years of in-the-field 
pen testing experience in our state of the art hacking lab. Master the skills 
of an Ethical Hacker to better assess the security of your organization. 
Visit us at: 
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------




---------------------------------------------------------------------------
Ethical Hacking at the InfoSec Institute. Mention this ad and get $545 off
any course! All of our class sizes are guaranteed to be 10 students or less
to facilitate one-on-one interaction with one of our expert instructors.
Attend a course taught by an expert instructor with years of in-the-field
pen testing experience in our state of the art hacking lab. Master the skills
of an Ethical Hacker to better assess the security of your organization.
Visit us at:
http://www.infosecinstitute.com/courses/ethical_hacking_training.html
----------------------------------------------------------------------------


Current thread: