Windows Firewall Configuration - Truly Block EVERYTHING...

Discussion in 'Windows 10' started by CODYQX4, Aug 24, 2015.

  1. fLOW.

    fLOW. MDL Senior Member

    Jul 28, 2009
    475
    571
    10
    It doesn't state which app attemped that, just what it shows on the screenshot.

    It was me who asked about edge, and here it works. I ran the .reg file "Allow Only Core Networking + Allow Windows Update" and configured the WFC according to your screenshots.

    But i see that a lot of stuff is still allowed in the "WFC Manage Rules". I had to disable Store, SearchUI.exe, explorer.exe, etc. I believe these were the ones calling for msn-bot because since i blocked them i didn't saw it anymore. But the question is, shouldn't they be blocked by default?

    In Windows Firewall Advanced Settings i have the correct configuration, just like your .reg looks.
     
  2. CODYQX4

    CODYQX4 MDL Developer

    Sep 4, 2009
    4,813
    45,775
    150
    #22 CODYQX4, Aug 25, 2015
    Last edited: Apr 12, 2019
    (OP)
    .
     
  3. manix

    manix MDL Junior Member

    Aug 18, 2012
    80
    23
    0
    IP address blocking is uselss, you know that, right ?
    Both methods use the same approach through the Windows Firewall, which is currently the only way you could block actual services from the Internet instead of just .exe files.
     
  4. CODYQX4

    CODYQX4 MDL Developer

    Sep 4, 2009
    4,813
    45,775
    150
    #24 CODYQX4, Aug 25, 2015
    Last edited: Apr 12, 2019
    (OP)
    .
     
  5. CODYQX4

    CODYQX4 MDL Developer

    Sep 4, 2009
    4,813
    45,775
    150
    #25 CODYQX4, Aug 25, 2015
    Last edited: Apr 12, 2019
    (OP)
    .
     
  6. fLOW.

    fLOW. MDL Senior Member

    Jul 28, 2009
    475
    571
    10
    Yes, i did.
     
  7. CODYQX4

    CODYQX4 MDL Developer

    Sep 4, 2009
    4,813
    45,775
    150
    #27 CODYQX4, Aug 25, 2015
    Last edited: Apr 12, 2019
    (OP)
    .
     
  8. fLOW.

    fLOW. MDL Senior Member

    Jul 28, 2009
    475
    571
    10
    CODYQX4,

    I did a reset "Restore Windows Firewall default set of rules" and merged again the .reg file and it looks good this time, WFC only reports Windows components now on the "Manage Rules"

    Regarding the screenshot, just checked and it looks just like yours, seems good now.
     
  9. CODYQX4

    CODYQX4 MDL Developer

    Sep 4, 2009
    4,813
    45,775
    150
    #29 CODYQX4, Aug 25, 2015
    Last edited: Apr 12, 2019
    (OP)
    .
     
  10. SlompOchomp

    SlompOchomp MDL Novice

    Nov 28, 2012
    19
    0
    0
    If you want Edge you will need to "Allow through windows firewall" by right clicking on MicrosoftEdge.exe and MicrosoftEdgeCP.exe located in C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe
     
  11. fLOW.

    fLOW. MDL Senior Member

    Jul 28, 2009
    475
    571
    10
    Maybe but before the reset i took a look at Windows Firewall advanced settings and it only had your .reg entries (windows components + windows update). It did have Cortana entries but that was on WFC and i didn't add them. Weird, but it works good now, so no problem. :D
     
  12. Dr. T

    Dr. T MDL Novice

    Mar 23, 2015
    3
    0
    0
    Windows Firewall Control is WELL worth the small $10 donation to have unlimited registered installs on unlimited systems. I've been a paid supporter of this fantastic program for years. Thanks for the information you've provided here, CODYQX4. :cheers:
     
  13. fkar

    fkar MDL Recognized Advisor

    Nov 3, 2012
    1,588
    1,410
    60
    Thank you CODY for this wonderful piece of work. Thread is neatly and very simply written. :tankyou:
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...
  14. tolanri

    tolanri MDL Novice

    Aug 9, 2012
    30
    12
    0
    #34 tolanri, Aug 25, 2015
    Last edited: Aug 25, 2015
    Good guide. But be aware that any program with admin privileges can modify and add rules in Windows Firewall very easily. Sadly there's no option to set custom password so that no new rules can be added or modified without user confirmation. On the other hand Windows Firewall Control does offer feature "Secure rules" it should theoretically fix that if it works like it's supposed to - but I didn't try yet.

    Also Windows connects to internet even before it fully boots up (at loading screen), Windows firewall is not yet active at that point, so effectively not everything is blocked - some traffic still comes through before windows starts.

    Also as per my testing last weekend (*) I found out that Windows Update did create a new rules without asking, so anyone going with this method I recommend always disconnect from internet (disable network adapter) before proceeding to install update(s) and check if any new rules were created during the update so that ou can delete them before going online again.

    * - forums.mydigitallife.net/threads/63874-REPO-Windows-10-TELEMETRY-REPOSITORY/page50?p=1129793&viewfull=1#post1129793
     
  15. Cipher

    Cipher MDL Member

    May 31, 2008
    129
    37
    10
    Might be a idea to try this same idea but with a third party firewall like Comodo which is a little more flexible and is freeware. :g:
     
  16. jupp

    jupp MDL Novice

    Jul 20, 2009
    42
    6
    0
    #37 jupp, Aug 25, 2015
    Last edited: Aug 25, 2015
    i'm afraid just microsoft owns your machine and systems. some of the traffic still flows through if you use windows built-in firewall or other built-in features. for example, as stated above by tolanri, on boot-up, before the fw comes to play data already gets exchanged with microsoft without even asking.. you set "permissions" on windows 10? yeah, only for yourself.
     
  17. emanuelrv

    emanuelrv MDL Novice

    Dec 25, 2014
    23
    10
    0
     
  18. MrMagic

    MrMagic MDL Guru

    Feb 13, 2012
    6,015
    4,148
    210
    #39 MrMagic, Aug 25, 2015
    Last edited: Aug 25, 2015
    @ CODY - I've made an 'Allow' exception for WL Mail, but it still can't connect, any ideas?

    Worked fine for FF and uTorrent

    Also, peerblock is still blocking MS IPs? Shouldn't the firewall rules stop them before peerblock sees them?
     
  19. shewolf

    shewolf MDL Senior Member

    Apr 16, 2015
    471
    1,066
    10
    You can not have two parallel applications that block the connection.
     
    Stop hovering to collapse... Click to collapse... Hover to expand... Click to expand...