Question: Windows Server 2008 Firewall Open/Close IP range

General Network security, firewalls, port filtering/forwarding, wireless security, anti-spyware, as well as spam control and privacy discussions.
Post Reply
User avatar
terrancelam
Posts: 5465
Joined: Sun Apr 15, 2001 12:00 am
Location: Toronto, Canada Computers Built and Fixed personally: 720

Question: Windows Server 2008 Firewall Open/Close IP range

Post by terrancelam »

Hey everyone,

I had a question regarding Windows Server 2008 Firewall. I've noticed it is a bit more complex and allows for some customization in terms of allowing and blocking incoming data. Is it possible to setup the Windows firewall to allow only a certain range of IP address to access the computer and block anything else that isn't coming the specified range? If so, how would I go about doing that?

Thanks in advance for any help you can provide me with. My boss at work tasked me with finding a solution to preventing outside access to a computer has server 2008. Last week some idiot though it'd be good to run test php script on our backup server and ended up installing some backdoor scripts which caused it to get infected and hacked (something about serv-u ftp + super node stuff).


Cheers,
Marvin
Intel Core 2 Duo Q8300 2.55Ghz (1333mhz)
Asus P5N-D
OCZ Platinum 8gb (2x2gb) PC8000 1000mhz 5-5-5-18
EVGA 460GTX 1gb PCIE 2.0
Western Digital Black 640gb x 2 Raid 0
Coolermaster 1000W Modular PSU
Antec NSK4480B
Windows 7 Professional 64-bit

----------------------------------------------------------
HP TC5700 (Thin Client) 1ghz, 512mb 80gb 1x1000mb NIC 1x100mb NIC running PFSense 1.22
Linksys WRT-150 running DD-WRT V.24 (Access Point)

"SG Techies rule!" - Sig Buddies with Amro
koenigsegg
New Member
Posts: 2
Joined: Sun Mar 07, 2010 4:53 am
Location: Don't Know

Setting firewall scopes

Post by koenigsegg »

So from what I've read you want to block a whole scope?
Windows firewall can do this quickly.

First open Firewall program
Start > Admin Tools > Firewall

Click on Inbound Rules in the left frame then in the far right of the page it says add rules, click it.

Next a menu opens, you'll want to choose customer and hit next. Choose all programs if you don't want them to have any access then hit next, then pick any protocol and hit next.

Now you can choose which IP's to block by adding scopes or individual hosts and I believe you can ad about as many as you like. Next pages are simple, allow or deny, which networks and a Name.

Hope this helps
Post Reply