Windows Firewall
By using Windows Firewall, you can make sure that your computer is secured properly for the installed applications and enabled services and those unnecessary ports are blocked.
a)Keep minimum ports open
Keep open only those ports which you need. You can make a port available as per requirement also. If a computer arrangement needs to open multiple ports, you should estimate the services running on computer.
b)Scope settings for exception
The scope setting limits an exemption on Firewall that is open for all or to specific IPv4 addresses or their address ranges.
c)Programs need to be excluded in spite of ports
If you set program exclusion, Windows Firewall allows the specified program to communicate on specific port and then closes them when it gets over. But in case of port exemption, the particular port is open every time, which is more vulnerable to attack.
d)Organize Windows Firewall based on user policy instead of computer policy
Computer based policy are more easy to get to attacked because each computer will have different settings. If you set Windows Firewall by computer policy, it happens to hard to decide which computers are open to an attack.
e)Group Policy for Windows Firewall
You can use the Windows Firewall Group Policy settings to handle and organize Windows Firewall. By using this mean, more reliability & security of Windows Firewall can be achieved, so that locally logged in users cannot modify Windows Firewall settings.
f)Keep Windows Firewall off if third party firewall is installed
Keeping Windows Firewall running with another firewall program will not increase system security. But, it may cause serious issues if the rules or policies of both firewalls get conflicted. You’d disable Windows in this case.
|