question

somedude896741 avatar image
0 Votes"
somedude896741 asked SunnyQi-MSFT answered

Windows Firewall scope is not working

I have to block all connections except some IP for RDP so I create a windows firewall rule.
91755-image.png


I create a rule that allows connections to the port 3389 only for 192.168.2.50

91756-image.png


All profiles have the settings to reject all connections not specified by a rule .
91781-image.png

I think it is all correct i apply. When I try to connect (RDP is activated in the computer where rule is being applied) connection is refused.

91743-image.png

If I change the rule and allow all IP to connect via RDP.
91791-image.png

I have no problem connecting, but all IP can connect via RDP.
91772-image.png

I don't now why this is happening

(This problem is not only happening with RDP, also happens with ICMPv4,VNC...)


windows-platform-network
image.png (5.5 KiB)
image.png (30.1 KiB)
image.png (27.5 KiB)
image.png (32.8 KiB)
image.png (18.2 KiB)
image.png (16.1 KiB)
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.

1 Answer

SunnyQi-MSFT avatar image
0 Votes"
SunnyQi-MSFT answered

Hi,

Thanks for posting in Q&A platform.

May I know if your goal is block all IP to connection port 3389 except for the specific IP 192.168.2.50? If yes, create a new rule in Inbound Rules might not achieve your goal.

I have test in my lab environment and attaching the result for your reference:

I created a new rule in Inbound rules as the information you provided, I found the specific IP can RDP to the target machine, but the other IP can also RDP to the target machine.

91958-image-42.png

92042-image-43.png

92015-image-44.png

92032-image-41.png

92033-image-45.png

If you just need the specific IP can RDP to the target machine via port 3389, I would suggest you could specify the specific remote IP in the following rules of Inbound rules in Windows Firewall:

Remote Desktop - user Mode (TCP-In)

Remote Desktop -User Mode (UDP-In)

91948-image.png

Best Regards,
Sunny


If the Answer is helpful, please click "Accept Answer" and upvote it.

Note: Please follow the steps in our documentation to enable e-mail notifications if you want to receive the related email notification for this thread.


image-42.png (18.2 KiB)
image-43.png (21.5 KiB)
image-44.png (18.6 KiB)
image-41.png (129.4 KiB)
image-45.png (83.3 KiB)
image.png (159.9 KiB)
5 |1600 characters needed characters left characters exceeded

Up to 10 attachments (including images) can be used with a maximum of 3.0 MiB each and 30.0 MiB total.