?
Solved

Group Policy Management for Firewall

Posted on 2011-09-29
3
Medium Priority
?
302 Views
Last Modified: 2012-05-12
I used the GPO in my domain controller  to set my server firewall - domain outbound block except allow all Core Networking of File and Printer Sharing rules.

After I set this up,  I use gpupdate /force on my server to update my firewall on the server.  That works well.

Subsequent gpupdate /force on my server no longer work.

It seems I might have stopped some outbound rules that is necessary for GPO update to work.

Is there any way I can change my server to accept GPO update, since my firewall on server is under GPO now.

0
Comment
Question by:tommym121
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
3 Comments
 
LVL 39

Accepted Solution

by:
Krzysztof Pytko earned 2000 total points
ID: 36815312
Hi,

modify your GPO with firewall settings to allow also these ports

TCP,UDP 389, 445, 3269

on affected server, disable all firewall's profile temporairly and run

gpupdate /force or reboot it

after that re-enable firewall's profiles and check if it works again

Regards,
Krzysztof
0
 

Author Closing Comment

by:tommym121
ID: 36815408
THanks
0
 
LVL 39

Expert Comment

by:Krzysztof Pytko
ID: 36815432
You're welcome :)

Krzysztof
0

Featured Post

Get real performance insights from real users

Key features:
- Total Pages Views and Load times
- Top Pages Viewed and Load Times
- Real Time Site Page Build Performance
- Users’ Browser and Platform Performance
- Geographic User Breakdown
- And more

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Recovering from what the press called "the largest-ever cyber-attack", IT departments worldwide are discussing ways to defend against this in the future. In this process, many people are looking for immediate actions while, instead, they need to tho…
Resolving an irritating Remote Desktop connection that stops your saved credentials from being used.
This tutorial will give a an overview on how to deploy remote agents in Backup Exec 2012 to new servers. Click on the Backup Exec button in the upper left corner. From here, are global settings for the application such as connecting to a remote Back…
This tutorial will walk an individual through the steps necessary to configure their installation of BackupExec 2012 to use network shared disk space. Verify that the path to the shared storage is valid and that data can be written to that location:…
Suggested Courses
Course of the Month10 days, 6 hours left to enroll

765 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question