dgsmith Posted February 4, 2011 Posted February 4, 2011 Got a problem with a bit of software (dansguardian ident exe) where Windows 7 is automatically configuring the rule for the software to be "blocked" as opposed to on allow. I am guessing because the installation doesn't specify what it should be, Windows 7 is choosing to block by default unless otherwise stated. Is there a way to configure this remotely or override it? Unfortunately, setting the same rule via group policy to allow just adds this rule alongside the blocked one and doesn't take priority.
dgsmith Posted February 11, 2011 Author Posted February 11, 2011 I guess noone has any idea about Win7 firewall either then!
qcomer Posted February 11, 2011 Posted February 11, 2011 We disable any computer-based firewall on our network. We have hardware firewalls in place. If something happens to the computer, re-image it.
Killer_Bot Posted February 14, 2011 Posted February 14, 2011 I'm with qcomer on this, we tend to turn all our Computer based Firewalls off as they cause more trouble sometimes than they are worth. It's one of those good side bad side things I suppose.
McBridge Posted February 14, 2011 Posted February 14, 2011 I agree turn windows firewall off. Although they have improved over the years they really are not up to the job for domain firewall security.
dgsmith Posted February 15, 2011 Author Posted February 15, 2011 Unfortunately it doesn't seem that straightforward. When the firewall is off, the computer can't be contacted (ping, netsupport tutor etc) though the workstations can connect users to shared drives and printers. Also, as we're an RM CC4 network (cue awkward faces), it seems it's desirable, if not necessary, to run the windows firewall.
Cools Posted February 15, 2011 Posted February 15, 2011 run this on the clients and try " netsh firewall set opmode disable " and servers if there not directly connected to the net. then try it
dgsmith Posted February 18, 2011 Author Posted February 18, 2011 run this on the clients and try " netsh firewall set opmode disable " and servers if there not directly connected to the net. then try it Yes, but we're not looking to disable the firewall for the reasons noted above...
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now