Editing protocol on existing policy

I have an existing policy that allows 'Any' protocol from one computer to another.
But I want to only allow certain ports, but I don't see a way to edit 'Any'

I only want it to allow ports for file share
https://superuser.com/questions/764623/what-port-or-ports-are-used-for-file-sharing-in-windows

Comments

  • edited February 21

    There is no way to modify a policy the way you are hopping to.

    Normally all you need for Windows file sharing is a SMB policy. There is a predefined one you can use.
    Otherwise you need to create a Custom Packet Filter with the desired ports.
    Then create a policy using the predefined SMB Packet Filter or the new custom packet filter and remove the Any policy.

  • So there's no way to modify the current policy, so I have to delete this and use the SMB policy?

  • ok thank you, is there a reason why its not possible to edit the policy? It would be easier right vs having to delete and recreate.

  • It has been this way for as long as I know - prior to 1998.
    Just is.

  • You can modify a policy which uses a Custom Packet Filter, by modifying the Custom Packet Filter, which will in turn modify the policy which uses it.

  • ok thanks

Sign In to comment.