This shows you the differences between two versions of the page.
Both sides previous revision Previous revision Next revision | Previous revision | ||
computing:security:windows_firewall [2012/05/08 13:02] gcooper |
computing:security:windows_firewall [2014/07/26 11:51] (current) gcooper |
||
---|---|---|---|
Line 4: | Line 4: | ||
:!: You can use Computer Startup scripts as they run as the LocalSystem account. | :!: You can use Computer Startup scripts as they run as the LocalSystem account. | ||
+ | |||
+ | ===== Enable ICMP (Ping) Responses ===== | ||
+ | |||
+ | Enable the existing rule(s) for: | ||
+ | |||
+ | < | ||
+ | File and Printer Sharing (Echo Request - ICMPv4-In) | ||
+ | </ | ||
===== Manage with Group Policy ===== | ===== Manage with Group Policy ===== | ||
+ | |||
+ | ==== Windows XP/2003 ==== | ||
http:// | http:// | ||
+ | |||
+ | http:// | ||
Edit an existing or create a new Group Policy Object (GPO) | Edit an existing or create a new Group Policy Object (GPO) | ||
- | **Computer Configuration -> Administrative Templates -> Network -> Network Connections -> Windows Firewall** | + | **Computer Configuration |
Choose the proper profile to modify, // | Choose the proper profile to modify, // | ||
Line 18: | Line 30: | ||
* Enable firewall on all workstations | * Enable firewall on all workstations | ||
+ | * Allow Remote Desktop connections | ||
* Enable WMI | * Enable WMI | ||
* Enable AVG Admin remote installations | * Enable AVG Admin remote installations | ||
- | ^Setting^Enabled^Other Settings^ | + | ^Setting^Enabled^Other Settings |
- | |Windows Firewall: Protect all network connections|enabled| | | + | |Windows Firewall: Protect all network connections|enabled|Enable the Windows Firewall| |
|Windows Firewall: Allow remote administration exception|enabled|IP address of your management host| | |Windows Firewall: Allow remote administration exception|enabled|IP address of your management host| | ||
|Windows Firewall: Allow ICMP exceptions|enabled|Allow inbound echo request| | |Windows Firewall: Allow ICMP exceptions|enabled|Allow inbound echo request| | ||
|Windows Firewall: Allow Remote Desktop exception|enabled|comma separated list of allowed IP addresses or networks| | |Windows Firewall: Allow Remote Desktop exception|enabled|comma separated list of allowed IP addresses or networks| | ||
+ | |Windows Firewall: Define port exceptions|enabled|135: | ||
+ | |||
+ | ==== Windows 7/2008 ==== | ||
+ | |||
+ | http:// | ||
+ | |||
+ | **Computer Configuration -> Policies -> Windows Settings -> Security Settings -> Windows Firewall with Advanced Security** | ||
+ | |||
+ | :!: Note that settings from the older XP/2003 firewall will also still be applied and may conflict! | ||
+ | |||
+ | |||
+ | |||
+ | |||
+ | ===== Manage with Batch Files ===== | ||
+ | |||
+ | http:// | ||
+ | |||
+ | http:// |