Solved

Remotely disable / enable windows firewall

Posted on 2007-03-28
5
5,773 Views
Last Modified: 2010-08-03
How can I disable / enable windows firewall remotely?
Windows XP SP2 machines connected to Active Directory domain.
0
Comment
Question by:bigd563
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
5 Comments
 
LVL 12

Expert Comment

by:alandc
ID: 18810607
Yes, you most definately can.

See:
Managing Windows XP Service Pack 2 Features Using Group Policy
http://www.microsoft.com/technet/prodtechnol/winxppro/maintain/mangxpsp2/mngdepgp.mspx

Disabling the Windows Firewall
http://www.utexas.edu/its/windows/resources/disable-wfw.html
(Scroll down to Method C)
0
 
LVL 19

Accepted Solution

by:
aissim earned 500 total points
ID: 18812960
That is definitely the best solution for a long-term fix.

Just in case you were looking to disable/enable the firewall as needed, or more of a short-term thing, Microsoft (Sysinternals) has a utility that allows you to stop or start services on a remote machine: http://www.microsoft.com/technet/sysinternals/utilities/psservice.mspx
0
 
LVL 11

Expert Comment

by:kamalgopi
ID: 18813513
hi i think the best way is to GPO so you can control it globally raher going to individual pc.
see the link below and you will understand
http://www.bookpool.com/ct/165
0
 
LVL 1

Expert Comment

by:WeirdFishes
ID: 33346308
@ bigd563, aissim,

was it possible to disable a remote machines firewall with psservice? because i'm trying to and i get an error the network path was not found, it makes scence that i can't disable it as the firewall itself is blocking access. obviously when the firewall is off i can start and stop services with psservice....

i don't want to disable it through GPO yet as i've only started my new job this week and don't want to make any big changes to the network yet.

thanks in advanced..
0
 
LVL 12

Expert Comment

by:alandc
ID: 33350336
@WierdFishes,

You'll find that a GPO need not be applied to a large group.  The safest way is to have a test group and test machine to apply the GPO and test.  GPO is the best long term fix as per 'kamalgopi'. That said -- sysInternals tools are awesome!  But managing issues one-pc-at-a-time is a P.I.T.A. especially when (as the questions states -- you have a AD domain) and you can simply create a GPO called "no windows firewall" test first then pply it as needed.
0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

This article shows how to deploy dynamic backgrounds to computers depending on the aspect ratio of display
This article outlines the process to identify and resolve account lockout in an Active Directory environment.
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …
This video shows how to use Hyena, from SystemTools Software, to update 100 user accounts from an external text file. View in 1080p for best video quality.

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question