Option 1 – Set the following Group Policy:
Computer Configuration\Policies\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile\Settings Customize\Apply local connection security rules
To the following value: No
Option 2 – Follow these steps to apply a MEM policy:
- Go to the Devices-> Configuration profiles
- To update an existing policy:
- Click on the policy name in the list
- In the navigation bar, click on Properties
- Next to Configuration settings click on Edit
- Go to step #4
- If you’d like to create a new policy, click on the Create Policy button
- in the side panel, choose:
- Platform: Windows 10 and later
- Profile Type: Endpoint protection
- Click on Create button
- Proceed to step #4
- in the side panel, choose:
- In the Configuration settings wizard step, set the following:
- Set Microsoft Defender Firewall-> Network settings-> Public (non-discoverable)-> Microsoft Defender Firewall to Enable
- Set Rule merging-> IPsec rules from the local store to Block
- Complete all remaining wizard steps, review and Save policy
Option 3 – Set the following registry value:
HKLM\SOFTWARE\Policies\Microsoft\WindowsFirewall\PublicProfile\AllowLocalIPsecPolicyMerge
To the following REG_DWORD value: 0