Setting up Windows 2003 System Firewall

  

The firewall provided by Windows 2003 is called Internet Connection Firewall, which allows the network to be protected from external threats by allowing secure network communication to enter the network through the firewall while rejecting insecure communication. Internet Connection Firewall is only included in Windows Server 2003 Standard Edition and 32-bit versions of Windows Server 2003 Enterprise Edition.
On Windows 2003 servers, enable the firewall feature for computers that are directly connected to the Internet, allowing network adapters, DSL adapters, or dial-up modems to connect to the Internet.
Windows 2003 Internet Connection Firewall can manage service ports, such as HTTP port 80, FTP port 21, etc. As long as the system provides these services, the Internet connection firewall can monitor and manage these ports.
Setting the System Firewall
1. Right click on the “Local Area Connection” icon in the lower right corner of the desktop and click on the “Status” option.

Second, the emergence of & ldquo; Local Area Connection Status & rdquo; dialog box, click on the & ldquo; Properties & rdquo; button.

Third, the pop-up & ldquo; Local Area Connection Properties & rdquo; dialog box, click on the & ldquo; Superior & rdquo; tab.

four appear as shown below to start /stop the firewall interface. Enable the Internet Connection Firewall, check the "Protect my computer and network by restricting or blocking access to this computer from the Internet" checkbox, and click the “Settings" button.


five in the pop-up & ldquo; Advanced Settings & rdquo; dialog box Services tab, set the firewall Web service, select the & ldquo; Web server (HTTP) & rdquo; complex options.

Six, click & ldquo; OK & rdquo; button. Once set, network users will not be able to access other network services provided by the server other than the web service.

Note: can be selected according to the service provided by the Windows 2003 server, you can multi-select. The standard service system is already preset in the system, you just need to select the appropriate option. If the server also provides non-standard services, it needs to be manually added by the administrator.
VII. Add the settings of the service, click the “Add” button.

Eight, in the event of & ldquo; add service & rdquo; dialog box, you can fill in the service description, port number, IP address, services used, and select the protocol used (Web services using the TCP protocol, DNS query Use the UDP protocol) to set up non-standard services.
Note: It is very necessary to establish a security log. When the server security is threatened, the log can provide reliable evidence.

Nine, set the firewall security log settings in the & ldquo; Advanced Settings & rdquo; dialog box, select & ldquo; security log & rdquo; tab, appear & ldquo; Security Logging Settings & rdquo; dialog box, select the record Project, the firewall will record the corresponding data. The default path of the log file is C:\\Windows\\Pfirewall.log, which can be opened with Notepad. The format of the generated security log is W3C extended log file format, which can be viewed and analyzed by common log analysis tools.
Ten, Internet connection firewall summary
Internet connection firewall can effectively block the illegal ** of the Windows 2003 server, prevent illegal remote host to the server, thus improving the security of the Windows 2003 server. At the same time, it can also effectively intercept viruses that use the operating system **** for port attacks, such as worms such as shockwaves. If you enable this firewall feature on a virtual router built with Windows 2003, it can protect the entire internal network.

Copyright © Windows knowledge All Rights Reserved