Windows Firewall GPO don't add registry key on some servers?


hi,

we add windows firewall settings gpo - "windows firewall advanced security" our servers.

but on servers have windows firewall enable gpo but don't have  hklm\software\policies\microsoft\windowsfirewall\domainprofile enablefirewall registry key set 1. fw rules there if in control panel\all control panel items\windows firewall , says manage administrator.

so know why registry key not set gpo? 


/saitech

hi,
before go further, please run gpresult /h command view group policy report if gpo applied on clients.
if gpo not applying, check following article common reasons try troubleshooting:
10 common problems causing group policy not apply
http://social.technet.microsoft.com/wiki/contents/articles/22457.10-common-problems-causing-group-policy-to-not-apply.aspx
, check if ms16-072 installed on clients , domain controllers might cause user group policy not working, if case, please use group policy management console (gpmc.msc) , add authenticated users group read permissions on group policy object (gpo). if using security filtering, add domain computers group read permission. please see: https://support.microsoft.com/en-sg/kb/3163622
in addition, please make sure there no other gpos or scripts modifying registry.
best regards, 
wendy

please remember mark replies answers if help.
if have feedback technet subscriber support, contact tnmff@microsoft.com



Windows Server  >  Group Policy



Comments

Popular posts from this blog

Edit Group Policy

Hyper-V VM not reaching OS 'Logon' screen

DNS question...