Want to protect your cyber security and still get fast solutions? Ask a secure question today.Go Premium


Enable Windows Server Firewall Exceptions Groups with Group Policy

Posted on 2009-04-16
Medium Priority
Last Modified: 2013-12-04
Hi experts,
i just configure firewall settings via group policies in a windows server 2008 environment.
I just want to enable the exception groups which are predefined on each server.
What i did was to configure the advanced firewall settings in group policy, created predefnied inbound rules there which names matches them in the firewall exceptions.

Result is that there are created new rules with the same name on the servers firewall exception rules, so i have duplicate entries
How can i just enable those?

Thanks in advance
Question by:merowinger
  • 2

Expert Comment

ID: 24174713
On the corresponding GPO, Go down to Windows Firewall with Advanced Security Settings, expand it, right click on the one which has an CN on it, and get to properties.
In the corrseponding Profile (Domain/Private/Public), Click the "Customize..." button in the "Settings" part, choose "No" next to "Apply local firewall rules"
and/or "local connection security rules" as required.
LVL 31

Author Comment

ID: 24182259
but that means that firewall setting already configured on the server will be ignored?
For examble if i have a KMS Server which KMS exceptions needs to be open my gpo rules will ignore that rule...correct?!?
LVL 31

Accepted Solution

merowinger earned 0 total points
ID: 24572981
i solved it with netsh commands. there can be enabled those firewall groups

Featured Post

Receive 1:1 tech help

Solve your biggest tech problems alongside global tech experts with 1:1 help.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Know the reasons and solutions to move/import EDB to New Exchange Server. Also, find out how to recover an Exchange .edb file and to restore the file back.
Unable to change the program that handles the scan event from a network attached Canon/Brother printer/scanner. This means you'll always have to choose which program handles this action, e.g. ControlCenter4 (in the case of a Brother).
This is used to tweak the memory usage for your computer, it is used for servers more so than workstations but just be careful editing registry settings as it may cause irreversible results. I hold no responsibility for anything you do to the regist…
Finding and deleting duplicate (picture) files can be a time consuming task. My wife and I, our three kids and their families all share one dilemma: Managing our pictures. Between desktops, laptops, phones, tablets, and cameras; over the last decade…
Suggested Courses

578 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question