防火墙win7防火墙设置(Win7 firewall settings)

win7防火墙设置  时间:2021-02-28  阅读:()

win7防火墙设置Win7 firewall settings

Win7 firewall settings:

1, we must first turn off the win7 automatic restore function.Automatic reduction called intelligent win7 reduction, becauseafter a restart when it is set to restore it. Turn off theautomatic reduction of operation is as follows: click Start -control panel - System - system protection, select the localdisk (C:) (system) -closed. One possible UAC, you need to enterthe administrator password.

2, start - enter CMD in the search programs and files in thebox, showing the presence of the cmd.exe program, right click-run as administrator identity, if you are the administrator,UAC prompts you to yes or no, if not the administrator, you needto enter the administrator password. Now at the command line.Run the secpol.msc, open the local security policy dialog box.Note the difference between win7 and Win XP

In Win XP, the administrator account must have administratorprivileges, they are consistent. But in win7, although theadministrator account, but still with ordinary accountidentity program. From CMD can also see if the administrator,it will display the administrator, if the general identity isnot displayed. But if you take a administrator account to runthe program, you are running with administrator privileges.This is the difference between administrator and otheradministrator account. In the win7 administrator is disabledby default.

3, navigate to the Windows firewall with advanced security.

Right click the Windows firewall with advanced security- lgpo- point attribute, open the properties dialog box. For homeusers, the general public domain, special, set to the same,actually if you only use a public network, you only need to setthe public profile tab. But for simple, we set it as consistent.Firewall status: enabled (recommended) ; inbound connections:block all connections; outbound connections: stop. We do notchoose the default settings, the default security settingsbelow us. For home users, if you choose inbound connections:stop all connections, then your computer cannot be server, willprevent eMule, KuGoo, and many other functions of the software,if you don' t want to be so strict, for example, you want to useremote desktop, set for the inbound links: (stop the default) .We do not use the default connection out of the station, stopusing.

We conducted a simple introduction to these two:

Inbound connections if the default value, then in accordancewith the rules of the inbound connection is allowed, if set toblock all connections, then any inbound connections areprohibited, even if it is not connected to conform to the rulesof the machine. So in such circumstances, can not use the remotedesktop. If set to allow outbound connections (default) , anyprogram can access the Internet, this is not what we want, weonly hope we allow programs to access the internet. A good pointto determine. If no accident, then any programat this time willnot be able to access the Internet. (if IE, indicating that ithas been added to the rules in the. We would not need IE accessrules. )

4 point, inbound and outbound rules can see the rules, thefollowing is empty. Because we are not allowed to access thenetwork program.

We do not need to set the rules into the station, because wehave stopped all connections, the design is useless. Thestation is that we need to set the rules, otherwise how can weuse the Internet? Right click outbound rules --- new rules -a dialog box, choose the program, the next step, enter thesystem of this procedure in the path of the next step, then setto allow connection, in the name of the input "to allow systemaccess network". You canmodify this rule we establish the ruleson the right side of the box. We do not need to be modified forsystem. Note that if you set the private network to network inthe Internet, you need special tick rather than the public.After this rule configuration is good, the rest is similar.We need to build three rules, to lay a good foundation for theinternet. The other two rules are as follows:

Name: DNS (1) allows programs and services; - thisprogram:%SystemRoot%\System32\svchost.exe; protocol and port-protocol type: UDP; local port: 1024-65535, remote port: 53;senior public.

(2) Name: allow back; procedures and service: all meet thespecified conditions and procedures; Protocol -protocol porttype: ICMPv4; senior public. And in front of that allow systemto access the network, a total of three.

5 point control panel ---windows f irewall ---windows advanced

settings, UAC control dialog box, asking you to confirm whetheror not to continue, if not the administrator requires you toenter the administrator password. Open the advanced windowssecurity firewall on the local computer, the inboundconnections, outbound connections, and we in the Group Policyunder the same setting, same. The three rule is set in frontof the US, this can not be changed. Group policy is set higherthan the setting. We have derived the rules here after save ina file for recovery.

IE set:

Point out of the station rule, a new rule is as follows:Name: "IE is allowed access to the Internet" programs andservices:%ProgramFi les%\Internet; Explorer\iexplore.exe;protocol and port, protocol type: TCP; 1024-65535; remote portlocal port: 80; senior public. The open IE, you can see, theinternet. The other is similar, so, only after we allow theprogram to access a network.

The setting of QQ:

Name: QQ is allowed access to the Internet; protocol and port- protocol type: UDP; remote port: 8000; senior public.If you QQ were set up as above will be landing in the port numberQQ landing interface named QQ. If you do not specify a remoteport number, do not have. If you're not sure for a program witharbitrary port number. Use the port number after some morestringent restrictions.

From our previous settings can be seen, only system is open.The svchost. exe port is open, and it only and remote port 53communication is essentially closed. Because the horse is notpossible with the remote port 53 communication

Virtono:€23.7/年,KVM-2GB/25GB/2TB/洛杉矶&达拉斯&纽约&罗马尼亚等

Virtono最近推出了夏季促销活动,为月付、季付、半年付等提供9折优惠码,年付已直接5折,而且下单后在LET回复订单号还能获得双倍内存,不限制付款周期。这是一家成立于2014年的国外VPS主机商,提供VPS和服务器租用等产品,商家支持PayPal、信用卡、支付宝等国内外付款方式,可选数据中心包括罗马尼亚、美国洛杉矶、达拉斯、迈阿密、英国和德国等。下面列出几款VPS主机配置信息,请留意,下列配置中...

Hostodo(年付$34.99), 8TB月流量 3个机房可选

Hostodo 算是比较小众的海外主机商,这次九月份开学季有提供促销活动。不过如果我们有熟悉的朋友应该知道,这个服务商家也是比较时间久的,而且商家推进活动比较稳,每个月都有部分活动。目前有提供机房可选斯波坎、拉斯维加斯和迈阿密。从机房的地理位置和实际的速度,中文业务速度应该不是优化直连的,但是有需要海外业务的话一般有人选择。以前一直也持有他们家的年付12美元的机器,后来用不到就取消未续约。第一、开...

3G流量免费高防CDN 50-200G防御

简介酷盾安全怎么样?酷盾安全,隶属于云南酷番云计算有限公司,主要提供高防CDN服务,高防服务器等,分为中国境内CDN,和境外CDN和二个产品,均支持SSL。目前CDN处于内测阶段,目前是免费的,套餐包0.01一个。3G流量(高防CDN)用完了继续续费或者购买升级包即可。有兴趣的可以看看,需要实名的。官方网站: :点击进入官网云南酷番云计算有限公司优惠方案流量3G,用完了不够再次购买或者升级套餐流量...

win7防火墙设置为你推荐
人人逛街人人逛街网是正品吗mate8价格手机华为mat8售价多少宕机宕机 这个词是什么意思啊网站优化方案网站优化方法有哪些怎么上传音乐如何将电脑上的音乐传到MP3上qq等级表谁能告诉我QQ等级列表?qq等级表QQ等级天数表qq新闻弹窗怎么取消新版QQ右下角新闻窗口的弹出?如图液晶显示器电源维修液晶显示器 电源板损坏 如何检修? 好的加分!小米什么时候抢购小米手机预约成功后什么时候抢购?
免费cn域名注册 免费动态域名 过期域名抢注 火山主机 smartvps 个人免费空间 坐公交投2700元 165邮箱 爱奇艺vip免费领取 卡巴斯基破解版 国外视频网站有哪些 yundun 东莞idc qq金券 godaddy空间 国外免费云空间 睿云 服务器防御 葫芦机 globalsign 更多