wiki.getshifting.com

--- Sjoerd Hooft's InFormation Technology ---

User Tools

Site Tools


firewallgpo

Windows Firewall GPO

Summary: How to configure a firewall GPO for Windows.
Date: Around 2014
Refactor: 1 March 2025: Checked links and formatting.

This is how to configure the firewall of your workstations in a domain. There are two configs, one for computers connected to the domain and one for computers who are not connected to the domain, for example, a laptop user working at home.

Connected

If a workstation is connected to the domain it means it's in a secure trusted network. This means you can turn the firewall off:

firewallgpodomain.jpg


Not connected

If a workstation is not connected to the domain it means it's in an untrusted network. Which means we'll have to turn the firewall on. Because in my case my users have to be able to configure extra exceptions I already have some basic exceptions configured, but also allow my users to create extra exceptions:

firewallgpostandard01.jpg


Define Program exceptions:

firewallgpostandard02.jpg


Allow ICMP exceptions:

firewallgpostandard03.jpg


Define Port exceptions:

firewallgpostandard04.jpg


firewallgpo.txt · Last modified: by 127.0.0.1

Exception: Git command failed to perform periodic pull: From https://dev.azure.com/getshiftingcom/Documentation/_git/knowledge * branch main -> FETCH_HEAD There is no candidate for rebasing against among the refs that you just fetched. Generally this means that you provided a wildcard refspec which had no matches on the remote end.

Exception: Git command failed to perform periodic pull: From https://dev.azure.com/getshiftingcom/Documentation/_git/knowledge * branch main -> FETCH_HEAD There is no candidate for rebasing against among the refs that you just fetched. Generally this means that you provided a wildcard refspec which had no matches on the remote end.

An unforeseen error has occured. This is most likely a bug somewhere. It might be a problem in the gitbacked plugin.

More info has been written to the DokuWiki error log.