Register for your free account! | Forgot your password?

You last visited: Today at 11:19

  • Please register to post and access all features, it's quick, easy and FREE!

Advertisement



[Release]Using MMC to secure IPSP

Discussion on [Release]Using MMC to secure IPSP within the Shaiya PServer Guides & Releases forum part of the Shaiya Private Server category.

Reply
 
Old   #1
 
elite*gold: 0
Join Date: Apr 2011
Posts: 370
Received Thanks: 350
[Release]Using MMC to secure IPSP

It is very easy to block a single IP address on a Linux server but Windows Default firewall doesn’t allow us to block a single IP address on the server or for particular ports. However Microsoft released this and introduced IP Security Polices in their Local Security Polices option in the release of their SP2. But most of us are not aware of this option and we mostly adopted third party firewall and pay for their heavy license. However Firewall onl Windows 2008 Server is far more advanced than that on Windows 2003.

It would not be the case now as I have listed detailed steps along with the images on how to block IP using the IP security policy in Windows. This option is also available in XP as well as Windows 2003 Server edition.

How to BLock IP Using Windows:

You can either open MMC from START >> RUN >> MMC and add a new Snapin for IP Security policy with steps below:

Click ‘Start’ > ‘Run’ >type ‘MMC’ press ok.
In the console click > ‘File’ > ‘Add/Remove Snap in’
In the ‘Standalone Tab’ click The ‘add’ button
Seclect ‘IP Security Policy Managment’ > ‘ADD’ > ‘Local Computer’ > ‘finish’ > ‘close’ > ‘ok’
You should now be back to the Management console.

OR

Just goto START >> PROGRAMS >> ADMINISTRATIVE TOOLS >> LOCAL SECURITY POLICIES ON LOCAL COMPUTER to open the IP Security Management Console.

Lets start:

1. Select IP Security Policy and Right Click on the right pane to select new Policy. The screen will like an image below:


2. This will open the IP Security Policy Wizard, Just click on Next button.


3. On the Next screen you have to define the name of your IP Security policy and its description and then click Next Button.


4. Plesk uncheck the box for “Activate the default Response Rule” and then click Next Button..


5. On the Next screen remove the check for Edit Properties and Click Finish.


6. Once you click on the Finish Button you will see the screen below along with your rule being added to the list. Now we will create an IP filter list to block IPs.


7. Double click on the rule you have just create to open the properties window:


8. Since we have chosen to uncheck “Activate the default Response Rule” in Step 4 the Dynamic rule in not applied. Click on Add button to open Security Rule Wizard and Click again on Add button to open IP Filter List Wizard.


9. You will have a screen some what in Figure 9. Put in the name of your list and Click on the Add button.


10. This will open another window for you to add IP and ports in the IP Filter list. In the Description box just put in the IP address that you want to block and make sure that you keep the check on the box for “Mirrored. Match packets with the exact appropriate source and destination addresses” and click on the Next button.


11. Select My IP address in the Sources Address from the drop down list.


12. You have many more options to select from the list for both in Sources and Destination Address. You will need some advanced knowledge to work with those option. We will select My IP address for now and click on Next button.


13. In the IP Traffic Destination, select “A specific IP Address” and enter the IP address that you want to block on your machine. Here you can also select a sub net from the drop down and block the entire subnet. Once you finish entering an IP/Subnet, click on Next button.


14. Here in IP Protocol Type you can define the protocol that you want to block, it can be any one from the list for example TCP, UDP, ICMP etc. We will select ANY which mean all connect from a specific IP address. If you select a protocol from the list andclick Next it will ask you to enter the port address that you want to block, example 80. But since we want to block all ports we will select Any and click Next and then Finish.




15. After you click on Finish button you will see that the rule has been added in the IP filter list. If you want to add more IP and subnets then click on the Add button to add another rule or block 2nd IP. Once you finish with it you will have rules.




16. Once your IP Filter List is complete click on the OK button to get back Security Rule Wizard. Select the IP filter list which you have created by clicking on the radio button and click Next.


17. In the Next screen of Security Rule Wizard you will not see any Filter Action as Block as by default it is not created. We will create a Filter action to block connect by click on Add button.


18. In the Name type “Block” and any discryption you like and click on Next.


19. In Filter Action General options select Block and click Next.


20. And then on Finish to get back to Security Rule Wizard.


21. This will add the Filter option as Block in the list, just click on radio button to select it and click Next.


22. Click Finish to complete the security Rule Wizard.


23. You will see the rule added in the list, you can add more rule with the same steps. Now just click OK to finish with the rules.


24. Now since we have already created the rules to block desired IP address just right click on the IP Security Policy and select Assign to apply the rule on the server.


There are allot many option to secure your entire server with IP security policy. You can create more rules to block every one on RDP port TCP 3389 and allow only select IPs. IP Security is IP and port based application and not Services based and you can create the rule as per your need.
taZツ is offline  
Thanks
16 Users
Old 02/01/2012, 17:42   #2
 
JohnHeatz's Avatar
 
elite*gold: 150
Join Date: Apr 2010
Posts: 9,739
Received Thanks: 8,981
Really awesome guide taZ, lets get it into the index of shaiya development.
JohnHeatz is offline  
Thanks
2 Users
Old 02/01/2012, 20:45   #3
 
elite*gold: 0
Join Date: Apr 2011
Posts: 370
Received Thanks: 350
ON: I hope it will help people in future.

OFF: John where are my cookies? My fingers hurts <3333
taZツ is offline  
Old 02/02/2012, 07:16   #4
 
[GM]Reach's Avatar
 
elite*gold: 0
Join Date: Oct 2011
Posts: 51
Received Thanks: 62
I love this taz keep the good work up.
[GM]Reach is offline  
Old 02/02/2012, 19:58   #5
 
abrasive's Avatar
 
elite*gold: 0
Join Date: Oct 2009
Posts: 262
Received Thanks: 812
Please don't cut and paste other people's work and pass it off as your own.

abrasive is offline  
Thanks
8 Users
Old 02/03/2012, 19:42   #6
 
elite*gold: 0
Join Date: Apr 2011
Posts: 370
Received Thanks: 350
Did i sayd it is MY work?

I don`t think that everyone knewd about MMC and how to use it or what it does.

So....sush. <3
taZツ is offline  
Old 02/07/2012, 05:23   #7
 
abrasive's Avatar
 
elite*gold: 0
Join Date: Oct 2009
Posts: 262
Received Thanks: 812
Quote:
Originally Posted by taZツ View Post
Did i sayd it is MY work?
The post has your alias and avatar on it, with no credit given to another source. That implies you are claiming it to be your own work. Who elses work does your post imply it is from?
abrasive is offline  
Thanks
1 User
Old 02/07/2012, 06:30   #8
 
JohnHeatz's Avatar
 
elite*gold: 150
Join Date: Apr 2010
Posts: 9,739
Received Thanks: 8,981
You got a point Abrassive, yet, for further discussion about it, please go on PM's as if this keeps going this way the thread will go totally off-topic.

Thank you.
JohnHeatz is offline  
Old 02/09/2012, 14:27   #9
 
Battle-of-Shaiya's Avatar
 
elite*gold: 260
Join Date: Feb 2011
Posts: 49
Received Thanks: 73
that thing dont work guys i was 2 days under attack and that thing here is on the server
and taZ know it he playing on WoS idk what i need too do too protect WoS
Battle-of-Shaiya is offline  
Old 02/09/2012, 20:40   #10
 
JohnHeatz's Avatar
 
elite*gold: 150
Join Date: Apr 2010
Posts: 9,739
Received Thanks: 8,981
Yet the post on any way is saying it will totally protect you, this is something that a lot of people do not even know, and it does help, yet it won't give you a 100% of protection
JohnHeatz is offline  
Reply


Similar Threads Similar Threads
[RELEASE] Secure PHP Web Registration Script
10/08/2019 - Shaiya PServer Guides & Releases - 208 Replies
This is technically obsolete now, and I'd recommend using my newer script instead. This is a secure registration script meant for Shaiya private servers. I noticed a lot of private servers were using sandolkakos's registration script, which is very dangerous since it is vulnerable to SQL injection. Ideally your UserUID column in the table PS_UserData.dbo.Users_Master should be set to auto-increment. If this is not the case, you will need to adjust this script, or ideally fix your...
|||| ++[RELEASE]++ !!ABC LVL BOT!! Fast/Secure ||||
12/26/2011 - WarRock Hacks, Bots, Cheats & Exploits - 3 Replies
LVL BOT by ABC All important features included for fast lvling. +++GM Warning/automatically returns to lobby +++Points Counter, counts the points you made in this powerlvling session
[Release] SECURE Orbit Bot
04/27/2011 - DarkOrbit - 372 Replies
You need the ACTIVATOR to use this free bot. SECURE Orbit Bot Safe and very stable bot (~ has been built from scratch) Collects everything but cargoboxes Multiaccounting
[Release] Secure BHop Script
08/08/2010 - Counter-Strike Hacks, Bots, Cheats & Exploits - 5 Replies
You can't get banned for using this Script because it's only presses the Space button = no injection into the game = No VAC Ban + it's secured. Btw it's an Private BHop script so when you leech it please give the credits. Info: How to use press "^" to start and "^" to stop Virus Scan:



All times are GMT +1. The time now is 11:22.


Powered by vBulletin®
Copyright ©2000 - 2026, Jelsoft Enterprises Ltd.
SEO by vBSEO ©2011, Crawlability, Inc.

Support | Contact Us | FAQ | Advertising | Privacy Policy | Terms of Service | Abuse
Copyright ©2026 elitepvpers All Rights Reserved.