This shows you the differences between two versions of the page.
Next revision | Previous revision | ||
computing:security:windows_firewall [2012/05/08 12:30] gcooper created |
computing:security:windows_firewall [2014/07/26 11:51] (current) gcooper |
||
---|---|---|---|
Line 4: | Line 4: | ||
:!: You can use Computer Startup scripts as they run as the LocalSystem account. | :!: You can use Computer Startup scripts as they run as the LocalSystem account. | ||
+ | |||
+ | ===== Enable ICMP (Ping) Responses ===== | ||
+ | |||
+ | Enable the existing rule(s) for: | ||
+ | |||
+ | < | ||
+ | File and Printer Sharing (Echo Request - ICMPv4-In) | ||
+ | </ | ||
===== Manage with Group Policy ===== | ===== Manage with Group Policy ===== | ||
+ | |||
+ | ==== Windows XP/2003 ==== | ||
http:// | http:// | ||
+ | http:// | ||
+ | |||
+ | Edit an existing or create a new Group Policy Object (GPO) | ||
+ | |||
+ | **Computer Configuration -> Policies -> Administrative Templates -> Network -> Network Connections -> Windows Firewall** | ||
+ | |||
+ | Choose the proper profile to modify, // | ||
+ | |||
+ | Here are some settings to: | ||
+ | |||
+ | * Enable firewall on all workstations | ||
+ | * Allow Remote Desktop connections | ||
+ | * Enable WMI | ||
+ | * Enable AVG Admin remote installations | ||
+ | |||
+ | ^Setting^Enabled^Other Settings or Notes^ | ||
+ | |Windows Firewall: Protect all network connections|enabled|Enable the Windows Firewall| | ||
+ | |Windows Firewall: Allow remote administration exception|enabled|IP address of your management host| | ||
+ | |Windows Firewall: Allow ICMP exceptions|enabled|Allow inbound echo request| | ||
+ | |Windows Firewall: Allow Remote Desktop exception|enabled|comma separated list of allowed IP addresses or networks| | ||
+ | |Windows Firewall: Define port exceptions|enabled|135: | ||
+ | |||
+ | ==== Windows 7/2008 ==== | ||
+ | |||
+ | http:// | ||
+ | |||
+ | **Computer Configuration -> Policies -> Windows Settings -> Security Settings -> Windows Firewall with Advanced Security** | ||
+ | |||
+ | :!: Note that settings from the older XP/2003 firewall will also still be applied and may conflict! | ||
+ | |||
+ | |||
+ | |||
+ | |||
+ | ===== Manage with Batch Files ===== | ||
+ | http:// | ||
+ | http:// |