Vista Firewall GPO file & print sharing not working
I work in IT at my business - we have an application that scans pcs and needs to access port 139 or 445. To do this we need to have file and print sharing enabled in the Windows Firewall.We have gotten new vista Ultimate laptops in the company - I have been testing with one now and can't figure what is going on. If I don't have any GPO set up for this laptop, I can go into the firewall, turn it on, and enable file & print sharing - I then go to a different laptop w/ correct credentials and I can scan with our application (I can also start - run - \\vistalaptop\c$ and it will open fine. I can also go to a command prompt and do a: net use \\vistalaptop\ipc$ and this connects fine).Okay, I copied all the ADMX files from a Vista box to our domain controller. Now, when I set up a new GPO from a Vista machine, connecting to our DC, open Group Policy Management - create a new GPO - ONLY set Windows Firewall: Allow inbound file and printer sharing exception - Under 'Allow unsolicited incoming messages from these IP addresses:' I put "*", to allow messages from any network. I enforce this and do a gpupdate on my vistalaptop and reboot, when it comes back I check the firewall settings and it's turned on and in exceptions it has 'File and Printer Sharing' checked and says under Domain 'yes' and is greyed out - So it is getting the setting from the GPO. Now if I try to do a start - run - \\vistalaptop\c$ or net use \\vistalaptop\ipc$ from the same machine it fails with 'The network name cannot be found'.If I set the GPO file and print sharing to 'Not configured" and then gpupdate and go to the firewall and manually check file and printer sharing as an exception it works fine. If I leave the 'file and print sharing' in the GPO and go into the firewall exceptions and that one is greyed out and checked, and if I manually check the other 'file and print sharing' as an exception (so now there are two exceptions, the one from the GPO and the one I manually checked) it will fail.So it seems the GPO that should tell it to open up the file and print sharing ports is actually blocking them? Am I missing something easy here?Thanks to anyone with some advice!!
November 6th, 2007 3:56am

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics