none
Firewall to block complete IP data RRS feed

  • Question

  • Hi Experts,

    I would like to block all the IP data communication through the network interface using firewall or any other preferable ways ? I could able to block all the applications but some internal program which pings "microsoft sites" where still active and sends data to check the internet connectivity. Please suggest some method to block the same ?

    Regards,

    lyf


    lyf4sci

    Friday, March 31, 2017 6:08 AM

All replies

  • Register your callout at the layer FWPM_LAYER_INBOUND_IPPACKET_V4 or FWPM_LAYER_INBOUND_IPPACKET_V6 and the condition should be FWPM_CONDITION_INTERFACE_INDEX and the value should be the interface index of the adapter where you want to block packets. The classify action should be set to FWP_ACTION_BLOCK and absorb the packet.Also implement hard block you can read from this link https://msdn.microsoft.com/en-us/library/windows/desktop/aa364008(v=vs.85).aspx
    Friday, April 7, 2017 4:52 AM