To determine which firewall profile is currently being used, click
Start, type
wf.msc in the
Start Search box, and then click
wf.msc in the
Programs list. The active profile is indicated in the
Overview section in the "Windows Firewall with Advanced Security" Microsoft Management Console (MMC).
For more information, visit the following Microsoft Web site:
You can set firewall rules in a Group Policy object (GPO) by using Windows Firewall together with the Advanced Security node in the Group Policy Management Console (GPMC) that is available in Windows Server 2008 or in Windows Vista. In GPMC, you can create different firewall rule sets for each of the following network location profiles or for a combination of them:
Note These rules apply only to computers that are running Windows Server 2008 or Windows Vista. These rules do not apply to computers that are running earlier versions of Windows, such as Windows Server 2003 or Windows XP with Service Pack 2.
If you set the rules in a GPO by using the Windows Firewall node in the Administrative Templates section of Group Policy Object Editor, you can create rules only for the Domain and Standard profiles. If this GPO is applied to Windows Vista or to Windows Server 2008, the rules in the Standard profile apply whenever the computer�s network location profile is set to
Private or
Public. The rules in the Domain profile still apply only when the computer�s network location profile is set to
Domain.
We recommend that you create separate GPOs to deliver firewall or connection security rules to your computers. Use one GPO for computers that are running Windows Vista or Windows Server 2008. In this GPO, create the rules by using Windows Firewall together with the Advanced Security node. Use a different GPO for computers that are running earlier versions of Windows. In this GPO, create the rules by using the Windows Firewall node in the Administrative Templates section. Use group filtering or Windows Management Instrumentation (WMI) filtering to make sure that the policies apply only to computers that are running the appropriate operating system.