WinRM Group Policy does not update Firewall

David Jenkins 946 Reputation points
2021-10-27T16:03:39.717+00:00

I have been trying to use Group Policy for enabling WinRM. It works at setting up WinRM but it appears to fail setting the Firewall. I create a group policy. I set it to enable WinRM any IP to connect. I added a Firewall exception to the group policy for 5985 and 5986.

I kept getting errors until I removed the group policy and ran WinRM QuickConfig.

There it said it updated Firewall settings and then things started working.

So my question is how to you get WinRM to work via Group Policy if the Firewall settings don't work?

Windows Server
Windows Server
A family of Microsoft server operating systems that support enterprise-level management, data storage, applications, and communications.
12,127 questions
Windows 11
Windows 11
A Microsoft operating system designed for productivity, creativity, and ease of use.
8,164 questions
0 comments No comments
{count} votes

1 answer

Sort by: Most helpful
  1. David Jenkins 946 Reputation points
    2021-10-28T12:43:28.627+00:00

    I was incorrect about the firewall. At least for 2019 and 2022 server.

    I do see the firewall entries.

    144592-image.png

    My question now is how would I get SSL automatically enabled by Group Policy?

    I do have a policy that auto enrolls systems with a machine cert. It just doesn't seem like an option.

    What are others doing?

    I'm finding the group policy isn't that usefull if you want to ensure SSL is working. Maybe something like enable the HTTP version via group policy then configure SSL after through some script.

    Right now I'm configuring WinRM Manually.

    0 comments No comments