防火墙win7防火墙设置(Win7 firewall settings)

win7防火墙设置  时间:2021-02-28  阅读:()

win7防火墙设置Win7 firewall settings

Win7 firewall settings:

1, we must first turn off the win7 automatic restore function.Automatic reduction called intelligent win7 reduction, becauseafter a restart when it is set to restore it. Turn off theautomatic reduction of operation is as follows: click Start -control panel - System - system protection, select the localdisk (C:) (system) -closed. One possible UAC, you need to enterthe administrator password.

2, start - enter CMD in the search programs and files in thebox, showing the presence of the cmd.exe program, right click-run as administrator identity, if you are the administrator,UAC prompts you to yes or no, if not the administrator, you needto enter the administrator password. Now at the command line.Run the secpol.msc, open the local security policy dialog box.Note the difference between win7 and Win XP

In Win XP, the administrator account must have administratorprivileges, they are consistent. But in win7, although theadministrator account, but still with ordinary accountidentity program. From CMD can also see if the administrator,it will display the administrator, if the general identity isnot displayed. But if you take a administrator account to runthe program, you are running with administrator privileges.This is the difference between administrator and otheradministrator account. In the win7 administrator is disabledby default.

3, navigate to the Windows firewall with advanced security.

Right click the Windows firewall with advanced security- lgpo- point attribute, open the properties dialog box. For homeusers, the general public domain, special, set to the same,actually if you only use a public network, you only need to setthe public profile tab. But for simple, we set it as consistent.Firewall status: enabled (recommended) ; inbound connections:block all connections; outbound connections: stop. We do notchoose the default settings, the default security settingsbelow us. For home users, if you choose inbound connections:stop all connections, then your computer cannot be server, willprevent eMule, KuGoo, and many other functions of the software,if you don' t want to be so strict, for example, you want to useremote desktop, set for the inbound links: (stop the default) .We do not use the default connection out of the station, stopusing.

We conducted a simple introduction to these two:

Inbound connections if the default value, then in accordancewith the rules of the inbound connection is allowed, if set toblock all connections, then any inbound connections areprohibited, even if it is not connected to conform to the rulesof the machine. So in such circumstances, can not use the remotedesktop. If set to allow outbound connections (default) , anyprogram can access the Internet, this is not what we want, weonly hope we allow programs to access the internet. A good pointto determine. If no accident, then any programat this time willnot be able to access the Internet. (if IE, indicating that ithas been added to the rules in the. We would not need IE accessrules. )

4 point, inbound and outbound rules can see the rules, thefollowing is empty. Because we are not allowed to access thenetwork program.

We do not need to set the rules into the station, because wehave stopped all connections, the design is useless. Thestation is that we need to set the rules, otherwise how can weuse the Internet? Right click outbound rules --- new rules -a dialog box, choose the program, the next step, enter thesystem of this procedure in the path of the next step, then setto allow connection, in the name of the input "to allow systemaccess network". You canmodify this rule we establish the ruleson the right side of the box. We do not need to be modified forsystem. Note that if you set the private network to network inthe Internet, you need special tick rather than the public.After this rule configuration is good, the rest is similar.We need to build three rules, to lay a good foundation for theinternet. The other two rules are as follows:

Name: DNS (1) allows programs and services; - thisprogram:%SystemRoot%\System32\svchost.exe; protocol and port-protocol type: UDP; local port: 1024-65535, remote port: 53;senior public.

(2) Name: allow back; procedures and service: all meet thespecified conditions and procedures; Protocol -protocol porttype: ICMPv4; senior public. And in front of that allow systemto access the network, a total of three.

5 point control panel ---windows f irewall ---windows advanced

settings, UAC control dialog box, asking you to confirm whetheror not to continue, if not the administrator requires you toenter the administrator password. Open the advanced windowssecurity firewall on the local computer, the inboundconnections, outbound connections, and we in the Group Policyunder the same setting, same. The three rule is set in frontof the US, this can not be changed. Group policy is set higherthan the setting. We have derived the rules here after save ina file for recovery.

IE set:

Point out of the station rule, a new rule is as follows:Name: "IE is allowed access to the Internet" programs andservices:%ProgramFi les%\Internet; Explorer\iexplore.exe;protocol and port, protocol type: TCP; 1024-65535; remote portlocal port: 80; senior public. The open IE, you can see, theinternet. The other is similar, so, only after we allow theprogram to access a network.

The setting of QQ:

Name: QQ is allowed access to the Internet; protocol and port- protocol type: UDP; remote port: 8000; senior public.If you QQ were set up as above will be landing in the port numberQQ landing interface named QQ. If you do not specify a remoteport number, do not have. If you're not sure for a program witharbitrary port number. Use the port number after some morestringent restrictions.

From our previous settings can be seen, only system is open.The svchost. exe port is open, and it only and remote port 53communication is essentially closed. Because the horse is notpossible with the remote port 53 communication

RackNerd提供四款高配美国服务器促销活动低至月$189

RackNerd 商家给的感觉就是一直蹭节日热点,然后时不时通过修改配置结构不断的提供低价年付的VPS主机,不过他们家还是在做事的,这么两年多的发展,居然已经有新增至十几个数据中心,而且产品线发展也是比较丰富。比如也有独立服务器业务,不过在他们轮番的低价年付VPS主机活动下,他们的服务器估摸着销路不是太好的。这里,今天有看到RackNerd商家的独立服务器业务有促销。这次提供美国多个机房的高配独立...

wordpress高级跨屏企业主题 wordpress绿色企业自适应主题

wordpress高级跨屏企业主题,通用响应式跨平台站点开发,自适应PC端+各移动端屏幕设备,高级可视化自定义设置模块+高效的企业站搜索优化。wordpress绿色企业自适应主题采用标准的HTML5+CSS3语言开发,兼容当下的各种主流浏览器: IE 6+(以及类似360、遨游等基于IE内核的)、Firefox、Google Chrome、Safari、Opera等;同时支持移动终端的常用浏览器应...

VirMach:$7.2/年KVM-美元512MB/$7.2/年MB多个机房个机房可选_双线服务器租赁

Virmach对资源限制比较严格,建议查看TOS,自己做好限制,优点是稳定。 vCPU 内存 空间 流量 带宽 IPv4 价格 购买 1 512MB 15GB SSD 500GB 1Gbps 1 $7/VirMach:$7/年/512MB内存/15GB SSD空间/500GB流量/1Gbps端口/KVM/洛杉矶/西雅图/芝加哥/纽约等 发布于 5个月前 (01-05) VirMach,美国老牌、稳...

win7防火墙设置为你推荐
雅虎社区福建晋江社区是什么?在线漏洞检测如何查看网站的漏洞?中国论坛大全甘肃论坛都有哪些?渗透测试软件测试与渗透测试那个工作有前途微信如何建群微信如何建群迅雷云点播账号求一个迅雷云点播vip的账号,只是看的,绝不动任何手脚。迅雷云点播账号求百度云或者迅雷云播账号密码怎么点亮qq空间图标QQ空间图标怎么点亮?ios系统iOS系统是什么微信怎么看聊天记录微信在手机上怎么查看聊天记录
如何申请域名 cybermonday 80vps 便宜域名 美国主机评论 cpanel主机 128m内存 typecho 网站被封 网站cdn加速 200g硬盘 中国电信测网速 美国在线代理服务器 最漂亮的qq空间 厦门电信 万网主机管理 美国凤凰城 主机管理系统 湖南idc 广州虚拟主机 更多