Instead you should be looking under Advanced Firewall rules, inbound and outbound, to have a better understanding of what's blocked and allowed. I've never dealt with Windows Firewall before but thought I would start now before these DCs are truly production.įirst off, you're focusing on outbound traffic in your screenshot which isn't an immediate concern on a stock install of Microsoft Windows Server. which would at least tell me what is required for ADDS / DNS (and perhaps there is some extra unneeded stuff too). Maybe a good route to take would be to audit the FW logs as well. OR I suppose I could just start a whitelist and overwrite. In that case I think you can still disable programs via their path. ) but it looks like some are still just missing, for whatever reason (maybe intentionally). I did update with the latest ADMX files from here (. Unfortunately it looks like some of the predefined apps (specifically, Cortana) are missing from the Windows Firewall GPO. Perhaps this is my punishment for jumping in the 2019 pool? Agreed, I think the lack of information means not many have crossed this bridge yet (or maybe no one cares).
0 Comments
Leave a Reply. |
AuthorWrite something about yourself. No need to be fancy, just an overview. ArchivesCategories |