9.3.2 Ensure 'Windows Firewall: Public: Inbound connections' is set to 'Block (default)'

Warning! Audit Deprecated

This audit has been deprecated and will be removed in a future update.

View Next Audit Version

Information

This setting determines the behavior for inbound connections that do not match an inbound firewall rule.

The recommended state for this setting is: 'Block (default)'.

Solution

To establish the recommended configuration via GP, set the following UI path to ''Block (default)'':

Computer Configuration\Policies\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile\Inbound connections

See Also

https://workbench.cisecurity.org/files/1941