You are on page 1of 1

Side note:

- Made changes to FileServer & DC only


- Added FileServer, Host1 & Host2 under the "All Servers" tab in DC

=== Firewall Rules (Inbound) ===


1. Block Remote Desktop TCP-In:
- Purpose: Enhance security by preventing remote access to the system.
2. Block mDNS:
- Purpose: Enhance network security by limiting the exposure of information
about devices and services on the local network.
3. Block Windows Search:
- Purpose: Enhance security by blocking inbound communication for the Windows
Search service.
4. Block Desktop App Web Viewer:
- Purpose: Enhance security by blocking inbound communication for the Desktop
App Web Viewer service.
5. Block Microsoft Media Foundation Network:
- Purpose: Enhance security by blocking inbound communication for the Microsoft
Media Foundation Network service.
6. Block Microsoft Edge (mDNS-In):
- Purpose: Enhance security by blocking inbound communication for Microsoft Edge
that relies on mDNS.
7. Block DIAL protocol server (HTTP-In):
- Purpose: Enhance security by blocking inbound communication for the DIAL
protocol server over HTTP.
8. Block Delivery Optimization (UDP/TCP-In):
- Purpose: Enhance security by blocking inbound communication for Delivery
Optimization over UDP and TCP.
9. Block Windows Media Player:
- Purpose: Enhance security by blocking inbound and outbound communication for
Windows Media Player.
10. Block AllJoyn Router (UDP/TCP-In):
- Purpose: Enhance security by blocking inbound communication for the AllJoyn
Router service over UDP and TCP.
11. Block Windows Remote Management (HTTP-In)
- Purpose: Service not in use, block it to reduce attack surface.

=== Firewall Rules (Outbound) ===


1. Block Windows Search:
- Purpose: Enhance security by blocking outbound communication for the Windows
Search service.
2. Block Windows Media Player:
- Purpose: Enhance security by blocking outbound traffic related to Windows
Media Player.
3. Block AllJoyn Router (UDP/TCP-In):
- Purpose: Enhance security by blocking outbound communication for the AllJoyn
Router service over UDP and TCP.
4. Block Desktop App Web Viewer:
- Purpose: Enhance security by blocking outbound communication for the Desktop
App Web Viewer service.
5. Block Narrator:
- Purpose: Enhance security by blocking outbound communication for the Narrator
service.
6. Block mDNS:
- Purpose: Enhance network security by limiting the exposure of information
about devices and services on the local network.
7. Block Microsoft Media Foundation Network Source OUT [TCP ALL]
- Purpose: Reduce attack surface.

You might also like