Re: Group Policy and Firewall under SP2

Tech Tip: Click here to run a free scan for Windows Errors and optimize PC performance

From: David Copeland [MSFT] (davidcop_at_online.microsoft.com)
Date: 10/07/04


Date: Thu, 7 Oct 2004 17:18:33 -0500

With SBS 2003 it has a Group Policy which gets applied to the clients to
prevent the clients from being able to turn on the firewall option, however,
check out the following updates for SBS 2003 when you have XP Pro clients
with XP SP2.. Once you've applied the first update, then XP SP 2 clients
will have the firewall client enabled on them with the option to turn it off
grayed out. Group policies are policies that are configured on the SBS
server that can then be applied to all or some clients and/or users. To
take a look at the policies defined on SBS.. check out Start/Administrative
Tools/Group Policy Management.

http://www.microsoft.com/windowsserver2003/sbs/downloads/default.mspx

Update for Small Business Server 2003 Support for Windows XP Service Pack 2
Install this update to modify the policy of a Small Business Server 2003
domain to automatically configure Windows Firewall on Windows XP computers
running Service Pack 2.

Update to Client Setup for Deploying Windows XP SP2
Install this update to configure Windows Small Business Server 2003 Client
Setup to deploy Windows XP Service Pack 2 to all client computers running
Windows XP Professional.

You will also want the hotfix for Windows Server 2003 mentioned in the
following kb article.

"The following entry in the [strings] section is too long and has been
truncated" error message when you try to modify or to view GPOs in Windows
Server 2003, Windows XP Professional, or Windows 2000
http://support.microsoft.com/default.aspx?scid=KB;EN-US;842933

-- 
Hope that helps,
David Copeland
Microsoft Small Business Server Support
This posting is provided "AS IS" with no warranties, and confers no rights.
Newsgroups:
SBS v4.x : microsoft.public.backoffice.smallbiz
SBS 2000: microsoft.public.backoffice.smallbiz2000
SBS 2003: microsoft.public.windows.server.sbs
"paulie" <paul@fin-tek.com> wrote in message 
news:02bc01c4acb8$5acde760$a501280a@phx.gbl...
> Hi All, thanks for the invaluable help in the past.
>
> I just upgraded all my client to SP2, and one of the
> clients will not allow me to turn its firewall.  I get
> the messages that the firewall setting is controlled by
> group policy.
>
> What does that meaan and what is group policy??
>
> Cheers,
>
> Paulie 


Relevant Pages

  • Re: DCOM 10009 errors on SBS2008 with NAS
    ... The DCOM event id 10009 will occur when a client workstation has a miss-configured firewall or other issues affecting its network communications within the domain, for example if the workstation is not managed by an SBS GPO. ... If the workstation is on a different subnet than the SBS server and it is running Windows XP SP2 or higher, the firewall exceptions provided by the SBS group policies will not properly allow the required connectivity. ... You should edit the Client XP GPO and change the scope of the rules to allow subnet + the internal IP of the server. ...
    (microsoft.public.windows.server.sbs)
  • RE: VPN Authentication problems (unable to connect to the network using the user name and password y
    ... VPN following the below steps or manually create VPN to SBS from My Network ... Communications and Remote Desktop Connection? ... Are they using Windows XP SP2? ... For managing the Windows XP SP2 firewall under SBS network, ...
    (microsoft.public.windows.server.sbs)
  • Re: Still cant connect to RWW or OWA remotely
    ... In the Services MMC, is the Windows ... Firewall/Internet Connection Sharing service 'Disabled'? ... "Windows Firewall cannot run because another ... it certainly appears to be something about the SBS configuration. ...
    (microsoft.public.windows.server.sbs)
  • RE: DHCP Issues. Very strange
    ... can not obtain IP from SBS server. ... firewall or third-party firewall program block the DHCP traffic. ... it is most possible a client side issue of Windows ... since you have join it to SBS domain and the Windows XP SP2 ...
    (microsoft.public.windows.server.sbs)
  • RE: Adding WAP to Wired LAN
    ... Please still try to disable windows firewall on XP to test this issue. ... To narrow down this issue is a hardware issue or SBS network issue, ... If you do not have a router with DHCP function, ...
    (microsoft.public.windows.server.sbs)