| Policy | Setting |
| Windows Firewall: Allow local port exceptions | Disabled |
| Windows Firewall: Allow local program exceptions | Disabled |
| Windows Firewall: Allow remote administration exception | Enabled |
| Allow unsolicited incoming messages from: | * |
| Syntax: | | Type "*" to allow messages from any network, or | | else type a comma-separated list that contains | | any number or combination of these: | | IP addresses, such as 10.0.0.1 | | Subnet descriptions, such as 10.2.3.0/24 | | The string "localsubnet" | | Example: to allow messages from 10.0.0.1, | | 10.0.0.2, and from any system on the | | local subnet or on the 10.3.4.x subnet, | | type the following: | | 10.0.0.1,10.0.0.2,localsubnet,10.3.4.0/24 | |
| Policy | Setting |
| Windows Firewall: Allow Remote Desktop exception | Enabled |
| Allow unsolicited incoming messages from: | * |
| Syntax: | | Type "*" to allow messages from any network, or | | else type a comma-separated list that contains | | any number or combination of these: | | IP addresses, such as 10.0.0.1 | | Subnet descriptions, such as 10.2.3.0/24 | | The string "localsubnet" | | Example: to allow messages from 10.0.0.1, | | 10.0.0.2, and from any system on the | | local subnet or on the 10.3.4.x subnet, | | type the following: | | 10.0.0.1,10.0.0.2,localsubnet,10.3.4.0/24 | |
| Policy | Setting |
| Windows Firewall: Do not allow exceptions | Enabled |
| Windows Firewall: Protect all network connections | Disabled |