Group Policy Management
body { font-size:68%;font-family:MS Shell Dlg; margin:0px,0px,0px,0px; border: 1px solid #666666; background:#F6F6F6; width:100%; word-break:normal; word-wrap:break-word; } .head { font-weight:bold; font-size:160%; font-family:MS Shell Dlg; width:100%; color:#6587DC; background:#E3EAF9; border:1px solid #5582D2; padding-left:8px; height:24px; } .path { margin-left: 10px; margin-top: 10px; margin-bottom:5px;width:100%; } .info { padding-left:10px;width:100%; } table { font-size:100%; width:100%; border:1px solid #999999; } th { border-bottom:1px solid #999999; text-align:left; padding-left:10px; height:24px; } td { background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; } .btn { width:100%; text-align:right; margin-top:16px; } .hdr { font-weight:bold; border:1px solid #999999; text-align:left; padding-top: 4px; padding-left:10px; height:24px; margin-bottom:-1px; width:100%; } .bdy { width:100%; height:182px; display:block; overflow:scroll; z-index:2; background:#FFFFFF; padding-left:10px; padding-bottom:10px; padding-top:10px; border:1px solid #999999; } button { width:6.9em; height:2.1em; font-size:100%; font-family:MS Shell Dlg; margin-right:15px; } @media print { .bdy { display:block; overflow:visible; } button { display:none; } .head { color:#000000; background:#FFFFFF; border:1px solid #000000; } }
Setting Path:
Explanation
No explanation is available for this setting.
Supported On:
Not available
Firewall Rules
Data collected on: 11/10/2024 3:02:35 PM
General
Details
Domainwindowspapst.de
OwnerDWP\Domain Admins
Created11/10/2024 2:43:26 PM
Modified11/10/2024 3:00:44 PM
User Revisions0 (AD), 0 (SYSVOL)
Computer Revisions30 (AD), 30 (SYSVOL)
Unique ID{72D15E18-9A56-49F4-AF40-C73196DE6BB5}
GPO StatusEnabled
Links
LocationEnforcedLink StatusPath
None

This list only includes links in the domain of the GPO.
Security Filtering
The settings in this GPO can only apply to the following groups, users, and computers:
Name
NT AUTHORITY\Authenticated Users
Delegation
These groups and users have the specified permission for this GPO
NameAllowed PermissionsInherited
DWP\Domain AdminsEdit settings, delete, modify securityNo
DWP\Enterprise AdminsEdit settings, delete, modify securityNo
NT AUTHORITY\Authenticated UsersRead (from Security Filtering)No
NT AUTHORITY\ENTERPRISE DOMAIN CONTROLLERSReadNo
NT AUTHORITY\SYSTEMEdit settings, delete, modify securityNo
Computer Configuration (Enabled)
Policies
Windows Settings
Security Settings
Windows Firewall with Advanced Security
Global Settings
PolicySetting
Policy version2.33
Disable stateful FTPNot Configured
Disable stateful PPTPNot Configured
IPsec exemptNot Configured
IPsec through NATNot Configured
Preshared key encodingNot Configured
SA idle timeNot Configured
Strong CRL checkNot Configured
Inbound Rules
NameDescription
AllJoyn Router (UDP-In)Inbound rule for AllJoyn Router traffic [UDP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local portAny
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileDomain, Private
Network interface typeAll
ServiceAJRouter
Allow edge traversalFalse
GroupAllJoyn Router
AllJoyn Router (TCP-In)Inbound rule for AllJoyn Router traffic [TCP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port9955
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileDomain, Private
Network interface typeAll
ServiceAJRouter
Allow edge traversalFalse
GroupAllJoyn Router
Cast to Device streaming server (RTSP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using RTSP and RTP. [TCP 23554, 23555, 23556]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\mdeserver.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port23554, 23555, 23556
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePublic
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (HTTP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using HTTP. [TCP 10246]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port10246
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePublic
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (HTTP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using HTTP. [TCP 10246]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port10246
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileDomain
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (RTCP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using RTSP and RTP. [UDP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\mdeserver.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local portAny
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePublic
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (RTSP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using RTSP and RTP. [TCP 23554, 23555, 23556]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\mdeserver.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port23554, 23555, 23556
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfilePrivate
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device UPnP Events (TCP-In)Inbound rule to allow receiving UPnP Events from Cast to Device targets
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port2869
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePublic
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device SSDP Discovery (UDP-In)Inbound rule to allow discovery of Cast to Device targets using SSDP
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local portAny
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePublic
Network interface typeAll
Servicessdpsrv
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device functionality (qWave-TCP-In)Inbound rule for the Cast to Device functionality to allow use of the Quality Windows Audio Video Experience Service. [TCP 2177]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port2177
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePrivate, Public
Network interface typeAll
ServiceQwave
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (HTTP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using HTTP. [TCP 10246]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port10246
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfilePrivate
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device functionality (qWave-UDP-In)Inbound rule for the Cast to Device functionality to allow use of the Quality Windows Audio Video Experience Service. [UDP 2177]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local port2177
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePrivate, Public
Network interface typeAll
ServiceQwave
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (RTSP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using RTSP and RTP. [TCP 23554, 23555, 23556]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\mdeserver.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port23554, 23555, 23556
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileDomain
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (RTCP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using RTSP and RTP. [UDP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\mdeserver.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local portAny
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileDomain
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
Cast to Device streaming server (RTCP-Streaming-In)Inbound rule for the Cast to Device server to allow streaming using RTSP and RTP. [UDP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\mdeserver.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local portAny
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfilePrivate
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupCast to Device functionality
DIAL protocol server (HTTP-In)Inbound rule for DIAL protocol server to allow remote control of Apps using HTTP. [TCP 10247]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port10247
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfilePrivate
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupDIAL protocol server
DIAL protocol server (HTTP-In)Inbound rule for DIAL protocol server to allow remote control of Apps using HTTP. [TCP 10247]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port10247
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileDomain
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupDIAL protocol server
mDNS (UDP-In)Inbound rule for mDNS traffic [UDP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local port5353
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfilePublic
Network interface typeAll
Servicednscache
Allow edge traversalFalse
GroupmDNS
mDNS (UDP-In)Inbound rule for mDNS traffic [UDP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local port5353
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileDomain
Network interface typeAll
Servicednscache
Allow edge traversalFalse
GroupmDNS
mDNS (UDP-In)Inbound rule for mDNS traffic [UDP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local port5353
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfilePrivate
Network interface typeAll
Servicednscache
Allow edge traversalFalse
GroupmDNS
Microsoft Media Foundation Network Source IN [TCP 554]InBound Rule for the Microsoft Media Foundation's Capture SVC to open TCP port to enable RTSP
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port554, 8554-8558
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfileAll
Network interface typeAll
ServiceFrameServer
Allow edge traversalFalse
GroupMicrosoft Media Foundation Network Source
Microsoft Media Foundation Network Source IN [UDP 5004-5009]InBound Rule for the Microsoft Media Foundation's Capture SVC to open UDP port to enable RTSP
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local port5000-5020
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfileAll
Network interface typeAll
ServiceFrameServer
Allow edge traversalFalse
GroupMicrosoft Media Foundation Network Source
OpenSSH SSH Server (sshd)Inbound rule for OpenSSH SSH Server (sshd)
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%SystemRoot%\system32\OpenSSH\sshd.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port22
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfilePrivate
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupOpenSSH Server
Wireless Display (TCP-In)Inbound rule for Wireless Display [TCP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%systemroot%\system32\WUDFHost.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local portAny
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileAll
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupWireless Display
Wireless Display Infrastructure Back Channel (TCP-In)Inbound rule for Wireless Display Infrastructure back channel [TCP]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%systemroot%\system32\CastSrv.exe
ActionBlock
Authorized computers
Authorized users
Protocol6
Local port7250
Remote portAny
ICMP settingsAny
Local scopeAny
Remote scopeAny
ProfileAll
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupWireless Display
WFD ASP Coordination Protocol (UDP-In)Inbound rule for WLAN Service to allow coordination protocol for WFD Service sessions [UDP 7235]
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
Program%systemroot%\system32\svchost.exe
ActionBlock
Authorized computers
Authorized users
Protocol17
Local port7235
Remote port7235
ICMP settingsAny
Local scopeAny
Remote scopeLocal subnet
ProfileAll
Network interface typeAll
ServiceWlanSvc
Allow edge traversalFalse
GroupWLAN Service - WFD Application Services Platform Coordination Protocol (Uses UDP)
File and Printer Sharing (Echo Request - ICMPv6-In)Echo Request messages are sent as ping requests to other nodes.
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionAllow
SecurityRequire authentication
Authorized computers
Authorized users
Protocol58
Local portAny
Remote portAny
ICMP settingstype 128:code any
Local scopeAny
Remote scopeAny
ProfileAll
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupFile and Printer Sharing
File and Printer Sharing (Echo Request - ICMPv4-In)Echo Request messages are sent as ping requests to other nodes.
This rule might contain some elements that cannot be interpreted by the current version of GPMC reporting module
EnabledTrue
ProgramSystem
ActionAllow
SecurityRequire authentication
Authorized computers
Authorized users
Protocol1
Local portAny
Remote portAny
ICMP settingstype 8:code any
Local scopeAny
Remote scopeAny
ProfileAll
Network interface typeAll
ServiceAll programs and services
Allow edge traversalFalse
GroupFile and Printer Sharing
Connection Security Settings
User Configuration (Enabled)
No settings defined.