Solved

Trying to enable Domain firewall

Posted on 2012-03-10
7
397 Views
Last Modified: 2012-08-13
I just migrated my client from Server 2003 Enterprise to SBS 2011. I have found that every single workstation has the firewall disabled. The Domain firewall option is greyed out on the workstation saying that this setting is managed by your system administrator.

I went to the server and Opened Group Policy.
I navigated to "Domains - Company.local - MyBusiness - Computers - SBSComputers - Windows SBS Client Computers Windows 7" and edited the GPO There.

The exact GPO I enabled is "Computer Configuration - Policies - Administrative Templates - Network - Network Connections - Domain Profile - Windows Firewall: Protect all Network Connections"

I ensured that the link was both enabled and enforced but the workstation firewalls remain off.
How do I enable the Domain firewall?
0
Comment
Question by:LostInWindows
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 4
  • 3
7 Comments
 
LVL 5

Expert Comment

by:BAYCCS
ID: 37705147
Run a group policy result against one for the workstations from group policy management on the sbs server. Review the settings after the report is made. The settings may be coming from another GP.
0
 
LVL 1

Author Comment

by:LostInWindows
ID: 37705249
I ran the GP Result from 1 workstation and it says:
Firewall State       Off            Default Domain Policy
How do I enable it?
0
 
LVL 5

Accepted Solution

by:
BAYCCS earned 500 total points
ID: 37705269
Repeat the steps that you did above but this time edit the gpo named "Default Domain Policy". If you open group policy management the default policy is usually listed towards the top, or there should be a folder called group policy objects which will display all the gpos in your organization.
0
Use Case: Protecting a Hybrid Cloud Infrastructure

Microsoft Azure is rapidly becoming the norm in dynamic IT environments. This document describes the challenges that organizations face when protecting data in a hybrid cloud IT environment and presents a use case to demonstrate how Acronis Backup protects all data.

 
LVL 1

Author Comment

by:LostInWindows
ID: 37705272
That GPO was listed as Disabled. I enabled it.  I will wait an hour and see if that changes my result.
Thanks!
0
 
LVL 5

Expert Comment

by:BAYCCS
ID: 37705281
The only question that you might want to ask yourself is, why was it disabled? Someone disabled that GPO for a reason.

I just don't want another issue to come up and bite you....
0
 
LVL 1

Author Comment

by:LostInWindows
ID: 37705283
I need to look at the GPO on the old server.
I have looked after this company for more than 6 months and there is no reason for it to be disabled.
0
 
LVL 1

Author Closing Comment

by:LostInWindows
ID: 37705460
Thank you,
0

Featured Post

Office 365 Training for IT Pros

Learn how to provision tenants, synchronize on-premise Active Directory, implement Single Sign-On, customize Office deployment, and protect your organization with eDiscovery and DLP policies.  Only from Platform Scholar.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

A company’s centralized system that manages user data, security, and distributed resources is often a focus of criminal attention. Active Directory (AD) is no exception. In truth, it’s even more likely to be targeted due to the number of companies …
Active Directory security has been a hot topic of late, and for good reason. With 90% of the world’s organization using this system to manage access to all parts of their IT infrastructure, knowing how to protect against threats and keep vulnerabil…
This tutorial will walk an individual through the steps necessary to join and promote the first Windows Server 2012 domain controller into an Active Directory environment running on Windows Server 2008. Determine the location of the FSMO roles by lo…
This tutorial will walk an individual through the process of configuring their Windows Server 2012 domain controller to synchronize its time with a trusted, external resource. Use Google, Bing, or other preferred search engine to locate trusted NTP …

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question