RE: Turning XP firewall off



H:\>Netsh firewall show config

Domain profile configuration (current):
-------------------------------------------------------------------
Operational mode = Disable
Exception mode = Enable
Multicast/broadcast response mode = Enable
Notification mode = Enable

Service configuration for Domain profile:
Mode Customized Name
-------------------------------------------------------------------
Enable No UPnP Framework
Enable No Remote Desktop

Allowed programs configuration for Domain profile:
Mode Name / Program
-------------------------------------------------------------------
Enable Remote Assistance / C:\WINDOWS\system32\sessmgr.exe
Enable Message Queuing / C:\WINDOWS\system32\mqsvc.exe
Enable Microsoft Management Console / C:\WINDOWS\system32\mmc.exe
Enable Remote Desktop Connection / C:\WINDOWS\system32\mstsc.exe
Enable Microsoft Word for Windows / C:\Program Files\Microsoft
Office\Office\WINWORD.EXE
Enable Meditech Client/Server HCIS / C:\Program
Files\Meditech\MagicCS\Client\VMAGIC.EXE
Enable Track-It! Remote Control / C:\WINDOWS\TIREMOTE\wuser32.exe
Enable Track-It! Workstation Manager /
C:\WINDOWS\TIREMOTE\TIRemoteService.exe
Enable pcAnywhere Main Executable / C:\Program
Files\Symantec\pcAnywhere\Winaw32.exe
Enable pcAnywhere Host Service / C:\Program
Files\Symantec\pcAnywhere\awhost32.exe
Enable pcAnywhere Remote Service / C:\Program
Files\Symantec\pcAnywhere\awrem32.exe

Port configuration for Domain profile:
Port Protocol Mode Name
-------------------------------------------------------------------
1900 UDP Enable SSDP Component of UPnP Framework
2869 TCP Enable UPnP Framework over TCP
3389 TCP Enable Remote Desktop

Standard profile configuration:
-------------------------------------------------------------------
Operational mode = Disable
Exception mode = Enable
Multicast/broadcast response mode = Enable
Notification mode = Enable

Service configuration for Standard profile:
Mode Customized Name
-------------------------------------------------------------------
Enable No UPnP Framework
Enable No Remote Desktop

Allowed programs configuration for Standard profile:
Mode Name / Program
-------------------------------------------------------------------
Enable Remote Assistance / C:\WINDOWS\system32\sessmgr.exe
Enable Message Queuing / C:\WINDOWS\system32\mqsvc.exe
Enable Scheduler / C:\WINDOWS\SMINST\Scheduler.exe

Port configuration for Standard profile:
Port Protocol Mode Name
-------------------------------------------------------------------
1900 UDP Enable SSDP Component of UPnP Framework
2869 TCP Enable UPnP Framework over TCP
3389 TCP Enable Remote Desktop

Log configuration:
-------------------------------------------------------------------
File location = C:\WINDOWS\pfirewall.log
Max file size = 4096 KB
Dropped packets = Disable
Connections = Disable

Local Area Connection 3 firewall configuration:
-------------------------------------------------------------------
Operational mode = Disable

Wireless Network Connection firewall configuration:
-------------------------------------------------------------------
Operational mode = Disable

Local Area Connection 2 firewall configuration:
-------------------------------------------------------------------
Operational mode = Disable

1394 Connection firewall configuration:
-------------------------------------------------------------------
Operational mode = Disable


H:\>

"Eric VH" wrote:

More information:


C:\>Netsh firewall show state

Firewall status:
-------------------------------------------------------------------
Profile = Domain
Operational mode = Disable
Exception mode = Enable
Multicast/broadcast response mode = Enable
Notification mode = Enable
Group policy version = Windows Firewall
Remote admin mode = Disable


"Eric VH" wrote:

My Question is: Is the firewall turned off? Why am I getting the errors in
the security log?


I have created a group policy that turns off the windows XP firewall.
The policy is working – I have verified it both using the group policy
results and registry settings.
I have made the following changes to the group policy:

Prohibit use of Internet Connection Firewall on your DNS domain network
Enabled

Windows Firewall: Protect all network connections
Disabled

Windows Firewall: Protect all network connections
Enabled

When I run a: netsh firewall show state verbose=enable
<clip>
Local Area Connection 3 firewall settings:
-----------------------------------------------------------------
Operational mode = Enable
Version = IPv4
GUID = {01BC0070-58E6-4F13-80D9-FD590F38B2D1}
<clip>

In the event viewer:

The Windows Firewall has detected an application listening for incoming
traffic.

Name: -
Path: C:\WINDOWS\system32\svchost.exe
Process identifier: 212
User account: SYSTEM
User domain: NT AUTHORITY
Service: Yes
RPC server: No
IP version: IPv4
IP protocol: UDP
Port number: 68
Allowed: No
User notified: No

For more information, see Help and Support Center at
http://go.microsoft.com/fwlink/events.asp.

Of course when I click the link in the event view I get:
We’re sorry
There is no additional information about this issue in the Error and Event
Log Messages or Knowledge Base databases at this time. You can use the links
in the Support area to determine whether any additional information might be
available elsewhere


Thanks!


.



Relevant Pages

  • Re: Unable to decommission a Windows 2008 DC via dcpromo
    ... Windows IP Configuration ... Ethernet adapter Local Area Connection: ... Is there any firewalls installed on the 2008 DCs Windows 2008 has the local firewall running by default. ...
    (microsoft.public.windows.server.active_directory)
  • Re: Client End Firewalls
    ... it doesn't matter if the email client can't be tricked when the ... control such things on a Windows 98 box. ... > than getting the client firewall properly configured. ... > additional costs for configuration and configuration-changes? ...
    (Security-Basics)
  • Re: Cant Ping Windows 2003 server after R2 Upgrade..HELP!
    ... UPDATE* -- i've enabled to the windows firewall just to see what can be ... i then adjust the ICMP setting to allow ALL icmp. ... Enable 3 Allow outbound destination unreachable ... ICMP configuration for Local Area Connection 7: ...
    (microsoft.public.win2000.active_directory)
  • Re: R2 in-place upgrade bug ? ..HELP
    ... UPDATE* -- i've enabled to the windows firewall just to see what can be done ... Enable 3 Allow outbound destination unreachable ... Enable 9 Allow inbound router request ... ICMP configuration for Local Area Connection 7: ...
    (microsoft.public.windows.server.active_directory)
  • Re: Yes, someone else with Extender Issues
    ... Enable logging for the Windows Firewall and post the contents of the log: ... Service configuration for Domain profile: ... 6:34:12 PM: Verifying user is Administrator. ...
    (microsoft.public.windows.mediacenter)