Thursday, August 2, 2012

Using IP Sec policy to block a specified IP


Tried on XP & 7:

Start - Run - mmc
File - Add/Remove Snap In
IP Security Policy Management (Local computer)
Right click IP Security Policy...  - Create IP Security Policy
Use a cert from this CA - Any one (Microsoft ...coz the pc is not part of ActiveDirectory)
Add
This rule does not specify a tunnel
All Network connection
Add, Add, A specified IP Address (192.168.1.5)
My IP Address
Make sure you click the radio button "New IP Filter List" in IP filter lists:, Next
Add, Block
Make sure you click the radio button "New Filter Action" in Filter Actions:, Next
Right click the new "New IP Security Policy" - Assign