Procedure and the consequence when enabling the built-in firewall profiles for Domain Controllers?

EnterpriseArchitect 6,301 Reputation points
2024-03-15T13:16:36.9866667+00:00

I need help understanding how to manually set the Windows Firewall for all Domain Controllers with Advanced Security capabilities by enabling the Active Directory Domain Services and Active Directory Web Services rule groups.

Screenshot 2024-03-16 000221

User's image

According to this official article from Microsoft: Service overview and network port requirements - Windows Server | Microsoft Learn

There are Port 49152-65535 – RPC Ephemeral Ports how do I ensure these ports are not blocked by the Windows Firewall?

Any assistance and clarity would be highly appreciated.

Windows for business | Windows Client for IT Pros | Directory services | Active Directory
Windows for business | Windows Server | User experience | Other
Windows for business | Windows Server | Devices and deployment | Configure application groups
0 comments No comments
{count} votes

2 answers

Sort by: Most helpful
  1. Thameur-BOURBITA 36,491 Reputation points Moderator
    2024-03-15T14:52:00.8+00:00

    Hi @EnterpriseArchitect

    When you enable windows firewall , you should be sure that all ports required for domain controller are opened, for more information you can refer to the following link :

    How to configure a firewall for Active Directory domains and trusts


    Please don't forget to accept helpful answer


  2. Anonymous
    2024-03-18T05:54:48.51+00:00

    Hello EnterpriseArchitect,

    Thank you for posting in Q&A forum.

    You can check if these ports are blocked or not by the Windows Firewall based on the way in the following link.
    https://www.itechtics.com/check-windows-firewall-blocking-ports/

    Also, here is a similar thread with method for your reference.

    https://serverfault.com/questions/26564/how-to-check-if-a-port-is-blocked-on-a-windows-machine

    I hope the information above is helpful.

    If you have any questions or concerns, please feel free to let us know.

    Best Regards,

    Daisy Zhou

    ============================================

    If the Answer is helpful, please click "Accept Answer" and upvote it.


Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.