We have a VPN Concentrator 3005. How do we restrict access on the VPN Concentrator that would only allow file sharing on a particular server? I want the Remote users to be able to access file sharing only and nothing else. The server is running Windows 2003 server.
I haven't use VPN Concentrator. I use ASA/PIX for both S2S and Remote VPN.
Open port 135 to 139 (both TCP and UDP) and port 445 (both TCP and UDP).
These ports are considered dangerous ports. Make sure that when you are opening these ports for user access, it doesn't spill to internet (plain unauthenticated/unencrypted) and should be opened only to few trusted users.
Would you put the server in the DMZ? Internal and external users will be accessing this server. We have more external users than internal users. External users will be accessing this server through IPSEC VPN client.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...