Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations gkittelson on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Newbie: IP routing

Status
Not open for further replies.

tbalazs

IS-IT--Management
Dec 18, 2000
158
GB
Our new Win2K Server is a domain controller for a small Win2K Pro domain. The server has 2 NICs, one for an ADSL connection and one for connection to the LAN. ipconfig /all shows that IP routing is not enabled. Is this correct or should I enable it?
Thanks again for any help.
Tony.
 
Yes, you must enable routing, through RRAS under MMC

do Run, mmc, add Routing and Remote Access Server, and make your server act like a router.

But Becareful of security.

 
Before you enable routing on an always on internet access point, a firewall in place and configured is essential. Otherwise you have an open door to all & sundry.
To give you an idea of what's going on out there. I have my personal firewall at home set-up to tell me whenever someone pings my IP. This happens about two or three times an hour. When I trace the pings, about 50% are from my ISP and are benign, the rest are from unresolvable addresses from ISPs mostly in the Middle East and Eastern Europe.

A ping will tell anyone interested that there is a machine associated with an IP. What you do with this knowledge is then up to you.

In my opinion you should never have always-on internet access without a firewall in place and configured. Ian

"IF" is not a word it's a way of life
 
Why *should* I have routing enabled? Won't the setup work at all without it?
 
You don't need to buy a real firewall for the moment, but you can use the function of the W2K of IP filter

For that go on IP routing, General, choose the external NIC, property, then Input filter, and choosee, no input filter

Then output, choose only your network.

That the beginning, go to you will find a paper on How to hardening W2K.
 
Thank you. This is great info. But can't I just not enable routing?
 
If you want the other machines on the network to be able to use the DSL then IP Routing must be turned on.
 
Have you considered another server as use as a NAT or proxy server. That would solve the problem of a firewall assuming your internal network is non-routable.

I thought about ICS but in that case you would have DHCP problems.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top