09-18-2009 01:36 AM - edited 03-09-2019 10:34 PM
Hi,
Can we use Cisco CSA just as a personal firewall. I have been trying to create simple allow-deny rules but have not been succesful.
How can I create rules for just blocking an IP Range for RDP and allow all other IPS for all Ports?
Thanks in adv.
09-18-2009 05:41 AM
seems like overkill for CSA as it can do so much more. Why not just use windows firewall?
09-18-2009 11:49 AM
You need to modify the Windows XP Remote Control Module to allow RDP from only those addresses you want.
You also need to create an exception to your Personal Firewall module to exclude the addresses of your IPS.
Tom
09-19-2009 08:52 AM
where I need to modify Module? on CSA?Is there any option like that?
09-23-2009 10:30 AM
It depends on the version.
In 5.2 it's the the rule module "Windows XP Remote Control Module".
In 6.X I didn't see a comparable rule module but it wouldn't be difficult to create a rule using the User State set:
"Remote Interactive Logon [V6.0.1 r106] MS defined - All users who log on to the computer using a Remote Desktop connection."
and " RDP [V6.0.1 r106] Remote Desktop Protocol (Microsoft) Network Service " variable.
Tom
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide