Skip to content

Instantly share code, notes, and snippets.

@kapad
Created December 27, 2024 18:01
Show Gist options
  • Save kapad/375c64c3952407503674e893aa0b7c37 to your computer and use it in GitHub Desktop.
Save kapad/375c64c3952407503674e893aa0b7c37 to your computer and use it in GitHub Desktop.
Windows Public Firewall Rules - Defaults
We can make this file beautiful and searchable if this error is corrected: It looks like row 41 should actually have 16 columns, instead of 17 in line 40.
Local Address,Remote Address,Protocol,Local Port,Remote Port,Name,Group,Action,Override,Program,Authorized Users,Authorized Computers,Authorized Local Principals,Local User Owner,PolicyAppId,Application Package
Any,Any,Any,Any,Any,@{microsoft.windowscommunicationsapps_16005.14326.22113.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/AppManifest_OutlookDesktop_DisplayName},@{microsoft.windowscommunicationsapps_16005.14326.22113.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/AppManifest_OutlookDesktop_DisplayName},Allow,No,Any,Any,Any,Any,TRICYCLE\dev,None,S-1-15-2-2551677095-2355568638-4209445997-2436930744-3692183382-387691378-1866284433
Any,Any,Any,Any,Any,@{microsoft.windowscommunicationsapps_16005.14326.22113.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/AppManifest_OutlookDesktop_DisplayName},@{microsoft.windowscommunicationsapps_16005.14326.22113.0_x64__8wekyb3d8bbwe?ms-resource://microsoft.windowscommunicationsapps/hxoutlookintl/AppManifest_OutlookDesktop_DisplayName},Allow,No,Any,Any,Any,Any,TRICYCLE\dev,None,S-1-15-2-2551677095-2355568638-4209445997-2436930744-3692183382-387691378-1866284433
Any,Any,ICMPv6,Any,Any,Core Networking - Destination Unreachable (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,ICMPv4,Any,Any,Core Networking - Destination Unreachable Fragmentation Needed (ICMPv4-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,UDP,68,67,Core Networking - Dynamic Host Configuration Protocol (DHCP-In),Core Networking,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,UDP,546,547,Core Networking - Dynamic Host Configuration Protocol for IPv6(DHCPV6-In),Core Networking,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,IGMP,Any,Any,Core Networking - Internet Group Management Protocol (IGMP-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,TCP,IPHTTPS,Any,Core Networking - IPHTTPS (TCP-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,IPv6,Any,Any,Core Networking - IPv6 (IPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Local subnet,ICMPv6,Any,Any,Core Networking - Multicast Listener Done (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Local subnet,ICMPv6,Any,Any,Core Networking - Multicast Listener Query (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Local subnet,ICMPv6,Any,Any,Core Networking - Multicast Listener Report (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Local subnet,ICMPv6,Any,Any,Core Networking - Multicast Listener Report v2 (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,ICMPv6,Any,Any,Core Networking - Neighbour Discovery Advertisement (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,ICMPv6,Any,Any,Core Networking - Neighbour Discovery Solicitation (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,ICMPv6,Any,Any,Core Networking - Packet Too Big (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,ICMPv6,Any,Any,Core Networking - Parameter Problem (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,fe80::/64,ICMPv6,Any,Any,Core Networking - Router Advertisement (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,ICMPv6,Any,Any,Core Networking - Router Solicitation (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,UDP,Edge Traversal,Any,Core Networking - Teredo (UDP-In),Core Networking,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,ICMPv6,Any,Any,Core Networking - Time Exceeded (ICMPv6-In),Core Networking,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,TCP,7680,Any,Delivery Optimization (TCP-In),Delivery Optimization,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,UDP,7680,Any,Delivery Optimization (UDP-In),Delivery Optimization,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,Any,Any,Any,Desktop App Web Viewer,Desktop App Web Viewer,Allow,No,Any,Any,Any,Any,TRICYCLE\dev,None,Microsoft.Win32WebViewHost_cw5n1h2txyewy
Any,Any,UDP,5353,Any,Google Chrome (mDNS-In),Google Chrome,Allow,No,C:\Program Files\Google\Chrome\Application\chrome.exe,Any,Any,Any,Any,None,Any
Any,Any,UDP,53,Any,HNS Container Networking - DNS (UDP-In) - C08CB7B8-9B3C-408E-8E30-5E16A3AEB445 - 0,,Allow,No,Any,Any,Any,Any,Any,None,Any
Any,Any,TCP,53,Any,HNS Container Networking - ICS DNS (TCP-In) - C08CB7B8-9B3C-408E-8E30-5E16A3AEB445 - 0,,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,Any,Any,Hyper-V - WMI (Async-In),Hyper-V,Allow,No,%systemroot%\system32\wbem\unsecapp.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,135,Any,Hyper-V - WMI (DCOM-In),Hyper-V,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,Any,Any,Hyper-V - WMI (TCP-In),Hyper-V,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,6600,Any,Hyper-V (MIG-TCP-In),Hyper-V,Allow,No,%systemroot%\system32\vmms.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,2179,Any,Hyper-V (REMOTE_DESKTOP_TCP_IN),Hyper-V,Allow,No,%systemroot%\system32\vmms.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,RPC Dynamic Ports,Any,Hyper-V (RPC),Hyper-V,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,TCP,RPC Endpoint Mapper,Any,Hyper-V (RPC-EPMAP),Hyper-V,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,TCP,Any,Any,Hyper-V Management Clients WMI (Async-In),Hyper-V Management Clients,Allow,No,%SystemRoot%\system32\wbem\unsecapp.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,135,Any,Hyper-V Management Clients WMI (DCOM-In),Hyper-V Management Clients,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,Any,Any,Hyper-V Management Clients WMI (TCP-In),Hyper-V Management Clients,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,UDP,5353,Any,Microsoft Edge (mDNS-In),Microsoft Edge WebView2 Runtime,Allow,No,C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.112\msedgewebview2.exe,Any,Any,Any,Any,None,Any
Any,Any,UDP,5353,Any,Microsoft Edge (mDNS-In),Microsoft Edge,Allow,No,C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe,Any,Any,Any,Any,None,Any
Any,Local subnet,TCP,554, 8554-8558,Any,Microsoft Media Foundation Network Source IN [TCP 554],Microsoft Media Foundation Network Source,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Local subnet,UDP,5000-5020,Any,Microsoft Media Foundation Network Source IN [UDP 5004-5009],Microsoft Media Foundation Network Source,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,Any,Any,Any,Microsoft Store,Microsoft Store,Allow,No,Any,Any,Any,Any,TRICYCLE\dev,None,Microsoft.WindowsStore_8wekyb3d8bbwe
Any,Any,TCP,Any,Any,Proximity sharing over TCP (TCP sharing-In),Proximity Sharing,Allow,No,%SystemRoot%\system32\proximityuxhost.exe,Any,Any,Any,Any,None,Any
Any,Local subnet,UDP,7235,7235,WFD ASP Coordination Protocol (UDP-In),WLAN Service WFD Application Services Platform Coordination Protocol (Uses UDP),Allow,No,%systemroot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,TCP,Any,Any,WFD Driver-only (TCP-In),WLAN Service WFD Services Kernel Mode Driver Rules,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,UDP,Any,Any,WFD Driver-only (UDP-In),WLAN Service WFD Services Kernel Mode Driver Rules,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,TCP,Any,Any,Wireless Display (TCP-In),Wireless Display,Allow,No,%systemroot%\system32\WUDFHost.exe,Any,Any,NT AUTHORITY\USER MODE DRIVERS,Any,None,Any
Any,Any,TCP,7250,Any,Wireless Display Infrastructure Back Channel (TCP-In),Wireless Display,Allow,No,%systemroot%\system32\CastSrv.exe,Any,Any,Any,Any,None,Any
Any,PlayTo Renderers,TCP,2177,Any,Cast to Device functionality (qWave-TCP-In),Cast to Device functionality,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,PlayTo Renderers,UDP,2177,Any,Cast to Device functionality (qWave-UDP-In),Cast to Device functionality,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,UDP,PlayTo Discovery,Any,Cast to Device SSDP Discovery (UDP-In),Cast to Device functionality,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,PlayTo Renderers,TCP,10246,Any,Cast to Device streaming server (HTTP-Streaming-In),Cast to Device functionality,Allow,No,System,Any,Any,Any,Any,None,Any
Any,PlayTo Renderers,UDP,Any,Any,Cast to Device streaming server (RTCP-Streaming-In),Cast to Device functionality,Allow,No,%SystemRoot%\system32\mdeserver.exe,Any,Any,Any,Any,None,Any
Any,PlayTo Renderers,TCP,23554, 23555, 23556,Any,Cast to Device streaming server (RTSP-Streaming-In),Cast to Device functionality,Allow,No,%SystemRoot%\system32\mdeserver.exe,Any,Any,Any,Any,None,Any
Any,PlayTo Renderers,TCP,2869,Any,Cast to Device UPnP Events (TCP-In),Cast to Device functionality,Allow,No,System,Any,Any,Any,Any,None,Any
Any,Any,TCP,Any,Any,Connected Devices Platform - WiFi Direct Transport (TCP-In),Connected Devices Platform,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,UDP,6004,Any,Microsoft Office Outlook,,Allow,No,C:\Program Files\Microsoft Office\root\Office16\outlook.exe,Any,Any,Any,Any,None,Any
Any,Any,Any,Any,Any,Wi-Fi Direct Network Discovery (In),Wi-Fi Direct Network Discovery,Allow,No,%SystemRoot%\system32\dashost.exe,Any,Any,S-1-5-92-3339056971-1291069075-3798698925-2882100687-0,Any,None,Any
Any,Any,Any,Any,Any,Wi-Fi Direct Scan Service Use (In),Wi-Fi Direct Network Discovery,Allow,No,%SystemRoot%\system32\svchost.exe,Any,Any,Any,Any,None,Any
Any,Any,Any,Any,Any,Wi-Fi Direct Spooler Use (In),Wi-Fi Direct Network Discovery,Allow,No,%SystemRoot%\system32\spoolsv.exe,Any,Any,Any,Any,None,Any
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment