防火墙win7防火墙设置(Win7 firewall settings)

win7防火墙设置  时间:2021-02-28  阅读:()

win7防火墙设置Win7 firewall settings

Win7 firewall settings:

1, we must first turn off the win7 automatic restore function.Automatic reduction called intelligent win7 reduction, becauseafter a restart when it is set to restore it. Turn off theautomatic reduction of operation is as follows: click Start -control panel - System - system protection, select the localdisk (C:) (system) -closed. One possible UAC, you need to enterthe administrator password.

2, start - enter CMD in the search programs and files in thebox, showing the presence of the cmd.exe program, right click-run as administrator identity, if you are the administrator,UAC prompts you to yes or no, if not the administrator, you needto enter the administrator password. Now at the command line.Run the secpol.msc, open the local security policy dialog box.Note the difference between win7 and Win XP

In Win XP, the administrator account must have administratorprivileges, they are consistent. But in win7, although theadministrator account, but still with ordinary accountidentity program. From CMD can also see if the administrator,it will display the administrator, if the general identity isnot displayed. But if you take a administrator account to runthe program, you are running with administrator privileges.This is the difference between administrator and otheradministrator account. In the win7 administrator is disabledby default.

3, navigate to the Windows firewall with advanced security.

Right click the Windows firewall with advanced security- lgpo- point attribute, open the properties dialog box. For homeusers, the general public domain, special, set to the same,actually if you only use a public network, you only need to setthe public profile tab. But for simple, we set it as consistent.Firewall status: enabled (recommended) ; inbound connections:block all connections; outbound connections: stop. We do notchoose the default settings, the default security settingsbelow us. For home users, if you choose inbound connections:stop all connections, then your computer cannot be server, willprevent eMule, KuGoo, and many other functions of the software,if you don' t want to be so strict, for example, you want to useremote desktop, set for the inbound links: (stop the default) .We do not use the default connection out of the station, stopusing.

We conducted a simple introduction to these two:

Inbound connections if the default value, then in accordancewith the rules of the inbound connection is allowed, if set toblock all connections, then any inbound connections areprohibited, even if it is not connected to conform to the rulesof the machine. So in such circumstances, can not use the remotedesktop. If set to allow outbound connections (default) , anyprogram can access the Internet, this is not what we want, weonly hope we allow programs to access the internet. A good pointto determine. If no accident, then any programat this time willnot be able to access the Internet. (if IE, indicating that ithas been added to the rules in the. We would not need IE accessrules. )

4 point, inbound and outbound rules can see the rules, thefollowing is empty. Because we are not allowed to access thenetwork program.

We do not need to set the rules into the station, because wehave stopped all connections, the design is useless. Thestation is that we need to set the rules, otherwise how can weuse the Internet? Right click outbound rules --- new rules -a dialog box, choose the program, the next step, enter thesystem of this procedure in the path of the next step, then setto allow connection, in the name of the input "to allow systemaccess network". You canmodify this rule we establish the ruleson the right side of the box. We do not need to be modified forsystem. Note that if you set the private network to network inthe Internet, you need special tick rather than the public.After this rule configuration is good, the rest is similar.We need to build three rules, to lay a good foundation for theinternet. The other two rules are as follows:

Name: DNS (1) allows programs and services; - thisprogram:%SystemRoot%\System32\svchost.exe; protocol and port-protocol type: UDP; local port: 1024-65535, remote port: 53;senior public.

(2) Name: allow back; procedures and service: all meet thespecified conditions and procedures; Protocol -protocol porttype: ICMPv4; senior public. And in front of that allow systemto access the network, a total of three.

5 point control panel ---windows f irewall ---windows advanced

settings, UAC control dialog box, asking you to confirm whetheror not to continue, if not the administrator requires you toenter the administrator password. Open the advanced windowssecurity firewall on the local computer, the inboundconnections, outbound connections, and we in the Group Policyunder the same setting, same. The three rule is set in frontof the US, this can not be changed. Group policy is set higherthan the setting. We have derived the rules here after save ina file for recovery.

IE set:

Point out of the station rule, a new rule is as follows:Name: "IE is allowed access to the Internet" programs andservices:%ProgramFi les%\Internet; Explorer\iexplore.exe;protocol and port, protocol type: TCP; 1024-65535; remote portlocal port: 80; senior public. The open IE, you can see, theinternet. The other is similar, so, only after we allow theprogram to access a network.

The setting of QQ:

Name: QQ is allowed access to the Internet; protocol and port- protocol type: UDP; remote port: 8000; senior public.If you QQ were set up as above will be landing in the port numberQQ landing interface named QQ. If you do not specify a remoteport number, do not have. If you're not sure for a program witharbitrary port number. Use the port number after some morestringent restrictions.

From our previous settings can be seen, only system is open.The svchost. exe port is open, and it only and remote port 53communication is essentially closed. Because the horse is notpossible with the remote port 53 communication

SoftShellWeb:台湾(台北)VPS年付49美元起,荷兰VPS年付24美元起

SoftShellWeb是一家2019年成立的国外主机商,商家在英格兰注册,提供的产品包括虚拟主机和VPS,其中VPS基于KVM架构,采用SSD硬盘,提供IPv4+IPv6,可选美国(圣何塞)、荷兰(阿姆斯特丹)和台湾(台北)等机房。商家近期推出台湾和荷兰年付特价VPS主机,其中台湾VPS最低年付49美元,荷兰VPS年付24美元起。台湾VPSCPU:1core内存:2GB硬盘:20GB SSD流量...

青云互联:美国洛杉矶CN2弹性云限时八折,15元/月起,可选Windows/可自定义配置

青云互联怎么样?青云互联是一家成立于2020年6月的主机服务商,致力于为用户提供高性价比稳定快速的主机托管服务,目前提供有美国免费主机、香港主机、香港服务器、美国云服务器,让您的网站高速、稳定运行。美国cn2弹性云主机限时8折起,可选1-20个IP,仅15元/月起,附8折优惠码使用!点击进入:青云互联官方网站地址青云互联优惠码:八折优惠码:ltY8sHMh (续费同价)青云互联活动方案:美国洛杉矶...

iHostART:罗马尼亚VPS/无视DMCA抗投诉vps;2核4G/40GB SSD/100M端口月流量2TB,€20/年

ihostart怎么样?ihostart是一家国外新商家,主要提供cPanel主机、KVM VPS、大硬盘存储VPS和独立服务器,数据中心位于罗马尼亚,官方明确说明无视DMCA,对版权内容较为宽松。有需要的可以关注一下。目前,iHostART给出了罗马尼亚vps的优惠信息,罗马尼亚VPS无视DMCA、抗投诉vps/2核4G内存/40GB SSD/100M端口月流量2TB,€20/年。点击直达:ih...

win7防火墙设置为你推荐
ip地址是什么Ip地址格式是什么?weipin唯品购,weipuvip,是诈骗网站么?充了钱之后提不出,各种套路继续充钱天天酷跑刷积分教程天天酷跑积分怎么获得 天天酷跑刷积分方法微信如何建群在微信里怎么创建一个群别人可以加入扫描二维码的加入分词技术怎样做好百度分词技术和长尾词优化srv记录如何解析一个SRV域名的ip怎么上传音乐怎么上传音乐?怎么上传音乐怎样可以上传本地音乐到网上?网络虚拟机虚拟机网络设置主板温度多少正常主板温度多少算正常?
cn域名注册 播放vps上的视频 申请免费域名 私人服务器 最好的空间 me空间社区 世界测速 稳定免费空间 台湾google 中国联通宽带测速 免费个人网页 卡巴斯基官网下载 hostease 数据湾 accountsuspended godaddy退款 asp简介 服务器是什么 遨游论坛 跟踪路由 更多