Disable merging of local Microsoft Defender Firewall connection rules with group policy firewall rules for the Public profile

Option 1 – Set the following Group Policy:
Computer Configuration\Policies\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Public Profile\Settings Customize\Apply local connection security rules
To the following value: No

Option 2 – Follow these steps to apply a MEM policy:

  1. Go to the Devices-> Configuration profiles
  2. To update an existing policy:
    • Click on the policy name in the list
    • In the navigation bar, click on Properties
    • Next to Configuration settings click on Edit
    • Go to step #4
  3. If you’d like to create a new policy, click on the Create Policy button
    • in the side panel, choose:
      • Platform: Windows 10 and later
      • Profile Type: Endpoint protection
    • Click on Create button
    • Proceed to step #4
  4. In the Configuration settings wizard step, set the following:
    • Set Microsoft Defender Firewall-> Network settings-> Public (non-discoverable)-> Microsoft Defender Firewall to Enable
    • Set Rule merging-> IPsec rules from the local store to Block
  5. Complete all remaining wizard steps, review and Save policy

Option 3 – Set the following registry value:
HKLM\SOFTWARE\Policies\Microsoft\WindowsFirewall\PublicProfile\AllowLocalIPsecPolicyMerge
To the following REG_DWORD value: 0

1 Star2 Stars3 Stars4 Stars5 Stars (No Ratings Yet)
Loading...