Using Microsoft Windows Firewall
An improved Microsoft Windows Firewall (previously known as Internet Connection Firewall, or ICF)
prevents outside requests for data from entering the computer unless specifically allowed by the user.
NOTE:
Microsoft Windows Firewall is turned off at the factory.
Configuring Microsoft Windows Firewall
To provide the best security and usability, Windows Firewall provides the ability to add exceptions for
applications and services so that they can receive inbound traffic.
To configure Windows Firewall, open the firewall from Control Panel. You can also access the firewall
configuration from the Advanced tab in Network Connection properties.
NOTE:
After you launch Windows Firewall, Control Panel is available only to the Administrator
account.
●
General tab—The General tab provides access to the main three configuration options as shown
below
◦
On (Recommended)
◦
Don't allow exceptions
◦
Off (Not recommended)
When you select
Don't allow exceptions
, Windows Firewall blocks all requests to connect to your
computer, including those from programs or services on the Exceptions tab. The firewall also blocks
file and printer sharing and discovery of network devices.
Using Windows Firewall with no exceptions is useful when connecting to a public network. This
setting can help to protect your computer by blocking all attempts to connect to your computer.
When you use Windows Firewall with no exceptions, you can still view Web pages, send and
receive e-mail, or use an instant messaging program.
●
Exceptions tab—Provides the ability to add program and port exceptions to permit certain types of
inbound traffic. The exception settings specify the set of computers for which this port/program is
open.
You can specify three different modes of access:
◦
Any computer (including those on the Internet)
◦
My network (subnet) only
◦
Custom list
The
Display a notification when Windows Firewall blocks a program
option is selected by
default.
You can set a scope for each exception. For home and small office networks, it is recommended
that you set the scope only to the local network, where possible. This enables computers on the
Using Microsoft Windows Firewall
65