Windows Vista Forums
Vista Forums Home Join Vista Forums Windows 7 Forum Vista Tutorials Tags
Welcome to Windows Vista Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows Vista. The Vista forum also covers news and updates and has an extensive Windows Vista tutorial section that covers a wide range of tips and tricks.

Go Back   Vista Forums > Vista Newsgroups > Vista security

Vista - Advanced firewall rules help please.

Reply
 
Old 07-04-2009   #1 (permalink)
Martin Connolly


 
 

Advanced firewall rules help please.

I'm trying to create a rull, that will lock-down a Vista Home Premium PC, so
that it can only gain access to the internet via a corporate proxy on a
Cisco VPN client. I can block all port 80 and 443 traffic, but then can't
get a rule to work that permits traffic to the VPN gateway or proxy server.
I guess the port 80 block is getting a higher priority to the gateway permit
or something similar.

Any ideas please?

I need this to replace Novell Endpoint Security suite, which simply doesn't
work on Vista, even though they claim it does!


Thanks,

Martin.


My System SpecsSystem Spec
Old 07-05-2009   #2 (permalink)
Martin Connolly


 
 

Re: Advanced firewall rules help please.

A block rule always takes priority over an allow rule. Once ports 80 and 443
are blocked, another rule exception will never un-block them.

Instead you have to make the same block rule not apply to the proxy server,
so that it will be exempt.

Create an Outgoing rule to block remote ports TCP 80 and 443 , and in the
scope set two ranges for the remote IP address that exclude the proxy
server. Ignore the VPN tunnel IP addresses, as the firewall will not see
those.

So, for example, if your proxy server on the other side of the tunnel has an
IP address of 172.10.45.100, then the scope should 0.0.0.0 - 172.10.45.99
and 172.10.45.101 - 255.255.255.255.

Simple!

Martin

My System SpecsSystem Spec
Reply

Thread Tools


Similar Threads
Thread Forum
Windows Firewall and WF with Advanced Security rules not working Vista security
Vista Firewall with Advanced Security Vista General
Vista Advanced Firewall Vista security
Advanced interface to Windows Firewall Vista General
Firewall rules: how to get list of allow program through firewall? Vista security


Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46