Still celebrating National IT Professionals Day with 3 months of free Premium Membership. Use Code ITDAY17

x
?
Solved

Windows Server 2008 - retain firewall settings after sysprep

Posted on 2011-03-01
1
Medium Priority
?
2,516 Views
Last Modified: 2012-05-11
Greetings experts -

I'm deploying Windows Server 2008 x86 and x64 (not R2) in our virtual environment via sysprepped template.  On the master VM I enabled firewall exceptions for "Remote Desktop Connection" and "File and Printer Sharing" so folks can immediately ping and then RDP to the deployed VM without having to log into the console first.

Unfortunately sysprep seems to reset the firewall to defaults, disabling both of these exceptions in the deployed VM.

Is there some way to tell sysprep to not do this?  By local group policy, the registry, etc.?

Thanks in advance, as always.
0
Comment
Question by:annexit
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 

Accepted Solution

by:
annexit earned 0 total points
ID: 35020848
After doing some research and testing I figured this one out on my own.  I'll post it here for others.

Moderator - this can be closed out.

************************************************************************************************
Windows Server 2008 (not R2) Firewall Settings via GPEDIT.MSC

These settings are retained after sysprepping the machine.

Click Run, type "gpedit.msc"

Navigate to Computer Configuration > Windows Settings > Security Settings > Windows Firewall with Advanced Security

Go to Windows Firewall with Advanced Security - Local Group Policy Object > Inbound Rules

To enable RDP, which keeps after sysprepping:
      Right-click on "Inbound Rules" and select "New Rule"
      Select "Predefined", then "Remote Desktop" from the drop-down
      Keep pressing Next, "Allow the Connection", press Finish

To enable File and Printer Sharing, which keeps after sysprepping:
      Right-click on "Inbound Rules" and select "New Rule"
      Select "Predefined", then "File and Printer Sharing" from the drop-down
      Keep pressing Next, "Allow the Connection", press Finish

Exit gpedit

Reboot
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Sometimes drives fill up and we don't know why.  If you don't understand the best way to use the tools available, you may end up being stumped as to why your drive says it's not full when you have no space left!  Here's how you can find out...
A procedure for exporting installed hotfix details of remote computers using powershell
This tutorial will give a an overview on how to deploy remote agents in Backup Exec 2012 to new servers. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as connecting to a remote Back…
This Micro Tutorial hows how you can integrate  Mac OSX to a Windows Active Directory Domain. Apple has made it easy to allow users to bind their macs to a windows domain with relative ease. The following video show how to bind OSX Mavericks to …

670 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question