Using Microsoft Windows Firewall

An improved Microsoft Windows Firewall (previously known as Internet Connection Firewall, or ICF) prevents outside requests for data from entering the computer unless specifically allowed by the user.

NOTE: Microsoft Windows Firewall is turned off at the factory.

Configuring Microsoft Windows Firewall

To provide the best security and usability, Windows Firewall provides the ability to add exceptions for applications and services so that they can receive inbound traffic.

To configure Windows Firewall, open the firewall from Control Panel. You can also access the firewall configuration from the Advanced tab in Network Connection properties.

NOTE: After you launch Windows Firewall, Control Panel is available only to the Administrator account.

General tab—The General tab provides access to the main three configuration options as shown below

On (Recommended)

Don't allow exceptions

Off (Not recommended)

When you select Don't allow exceptions, Windows Firewall blocks all requests to connect to your computer, including those from programs or services on the Exceptions tab. The firewall also blocks file and printer sharing and discovery of network devices.

Using Windows Firewall with no exceptions is useful when connecting to a public network. This setting can help to protect your computer by blocking all attempts to connect to your computer. When you use Windows Firewall with no exceptions, you can still view Web pages, send and receive e-mail, or use an instant messaging program.

Exceptions tab—Provides the ability to add program and port exceptions to permit certain types of inbound traffic. The exception settings specify the set of computers for which this port/program is open.

You can specify three different modes of access:

Any computer (including those on the Internet)

My network (subnet) only

Custom list

The “Display a notification when Windows Firewall blocks a program” option is selected by default.

You can set a scope for each exception. For home and small office networks, it is recommended that you set the scope only to the local network, where possible. This enables computers on the

Using Microsoft Windows Firewall 65