Firewall policies Flashcards

(28 cards)

1
Q

What are the three profile types you can choose when configuring Windows Defender Firewall?

A
  1. Windows Firewall
  2. Windows Firewall rules
  3. Windows Hyper-V Firewall Rules
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What does Windows Firewall provide?

A

Host-based, two-way network traffic filtering for a device

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is the purpose of Windows Firewall?

A

To block unauthorized network traffic flowing into or out of the local device

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What can Windows Firewall rules define?

A

Granular Firewall rules, including specific ports, protocols, applications, and networks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

How many custom rules does each instance of the Windows Firewall profile support?

A

Up to 150 custom rules

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does the Windows Hyper-V Firewall Rules template allow you to control?

A

Firewall rules that apply to specific Hyper-V containers on Windows

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which applications are included in the Windows Hyper-V Firewall Rules?

A

Windows Subsystem for Linux (WSL) and Windows Subsystem for Android (WSA)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Fill in the blank: Windows Firewall provides _______ network traffic filtering.

A

[host-based, two-way]

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

True or False: Windows Firewall can block authorized network traffic.

A

False

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What are the 7 steps to implement Windows Defender Firewall in Intune ?

A
  1. Go to Endpoint security > Firewall, select Create Policy.
  2. Platform : Windows.
  3. Profile : Windows Firewall
  4. Name + Description
  5. Configuration settings
    Firewall Determines the fundamental state of the firewall for domain, private, and public network location profiles
    Auditing Defines the required firewall auditing settings
    Network List Manager, which defines TLS endpoint settings
  6. Scope tags
  7. Assignments
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are the 7 steps to implement Windows Firewall rules in Intune ?

A
  1. Go to Endpoint security > Firewall, select Create Policy.
  2. Platform : Windows.
  3. Profile : Windows Firewall Rules
  4. Name + Description
  5. Configuration settings
    ■ State (enabled or disabled)
    ■ Name
    ■ Interface Types
    ■ Remote Port Ranges
    ■ Action (Allow or Block)
    ■ Protocol
  6. Scope tags
  7. Assignments
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What is the firewall profile you can configure on macOS devices?

A

MacOS Firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

For macOS firewall policy, what are the 2 options to configure (configuration settings)?

A
  • Firewall
  • Applications

they are under networking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

For macOS firewall policy, in Firewall, what are the 5 settings you can configure?

A
  • Enable Stealth Mode
  • Enable Firewall
  • Allow Signed : If true, allows built-in software to receive incoming connections
  • Block All Incoming
  • Allow Signed App
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

For macOS firewall policy, in Applications, what can be configure?

A

By application Bundle ID, configure the allowed connection for the app

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What do Firewall policy reports display?

A

Status details about the firewall status for managed devices

Supports devices running Windows 10/11

17
Q

What is the default view when opening the Firewall node in Microsoft Intune?

A

Summary

Accessed via Endpoint security > Firewall > Summary

18
Q

What information does the Firewall Summary view provide?

A

Aggregate count of devices with firewall off and a list of Firewall policies including:
* Name
* Type
* Assignment status
* Last modified date

19
Q

Where can you find the report for MDM devices running Windows 10 or later with the firewall off?

A

Endpoint security node > Firewall > MDM devices running Windows 10 or later with firewall off

Accessed via Endpoint security > Firewall > MDM devices running Windows 10 or later with firewall off

20
Q

What is the purpose of the MDM Firewall status for Windows 10 and later report?

A

To provide organizational status details about firewall settings

Accessed via Reports > Firewall > MDM Firewall status for Windows 10 and later

21
Q

What are the possible statuses in the MDM Firewall status report?

A

Statuses include:
* Enabled
* Disabled
* Limited
* Temporarily Disabled
* Not applicable

22
Q

What does the ‘Enabled’ status indicate in the MDM Firewall status report?

A

The firewall is on and successfully reporting

23
Q

What does the ‘Disabled’ status indicate in the MDM Firewall status report?

A

The firewall is turned off

24
Q

What does the ‘Limited’ status indicate in the MDM Firewall status report?

A

The firewall isn’t monitoring all networks or some rules are turned off

25
What does the 'Temporarily Disabled' status indicate in the MDM Firewall status report?
The firewall is temporarily not monitoring all networks
26
What does the 'Not applicable' status indicate in the MDM Firewall status report?
The device doesn’t support firewall reporting
27
What operating systems do firewall reports support for managed devices?
Windows 10/11 ## Footnote Firewall reports are specifically designed to monitor and manage devices running these versions of Windows.
28
How to trouleshoot firewal issues
* conflicts for policies * eventviewer on windows