IPSec between Windows XP/2003 and Windows 7/2008 R2


i see lot of posts how people not able ipsec working between windows xp/2003 , windows 7/2008 r2 computers, don't see solutions.

has been able working?  if so, how?

i have same exact ipsec polices applied xp , windows 7 computers.  when try access xp comptuer windows 7 computer, works fine.  when try access windows 7 computer xp computer, doesn't.  see traffic getting windows 7 computer, being dropped.  firewalls disabled , ipsec policy set "request".  default windows 2003/xp "request" security being used.  windows 7/2008 r2 computers can communicate each other without problems, xp/2003 cannot communicate each other or with windows 7/2008 computers, shows security association has been negotiated , exists using ipsec monitor tool.  if disable ipsec server or apply customized "permit all" unecrypted policy windows xp/2003 computers, can communicate normally.

there has difference between xp/2003 , 7/2008, cannot find information different , how adjust settings make them compatible.

any appreciated.

hi slindley,

 

thanks posting here.

 

could discuss how did disable firewall windows7/2008 hosts? actually, should not disable since need supporting ipsec communication.

you may start form articles below first:

 

security rules windows firewall , ipsec-based connections in windows vista , in windows server 2008

http://support.microsoft.com/kb/942957

 

overview of ipsec rules in windows firewall advanced security

http://blogs.technet.com/b/networking/archive/2008/06/25/overview-of-ipsec-rules-in-windows-firewall-with-advanced-security.aspx

 

thanks.

 

tiger li

 

technet subscriber support in forum

if have feedback on our support, please contact tngfb@microsoft.com


please remember click “mark answer” on post helps you, , click “unmark answer” if marked post not answer question. can beneficial other community members reading thread.


Windows Server  >  Security



Comments

Popular posts from this blog

Azure MFA with Azure AD and RDS

Failed to setup initiator portal. Error status is given in the dump data.

Invalid pointer on gpresult /h gpreport.html