If the machine detects domain controllers on the network, it'll use the
domain profile. Otherwise it uses the standard profile. You could have a more
relaxed policy when the machine is "on the local LAN", and a tighter policy
when the machine (presumably a laptop) is roaming on non-managed networks.

This setting is detailed in "theBookofsp1.doc"
http://www.microsoft.com/downloads/details.aspx?FamilyID=c3c26254-8ce3-46e2-b
1b6-3659b92b2cde&DisplayLang=en
but you need to look at the section on Unattended setup support for the
Windows firewall to get a decent description.

Cheers
Ken

________________________________________
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of Todd Hofert
Subject: [ActiveDir] Group Policy Object for Windows Firewall

I am implementing Windows Firewall settings via an Active Directory Group
Policy. I see there are two sets of settings; Domain Profile and Standard
Profile with no explanation of how these settings differ. Can anyone explain
which circumstances dictate which profile to use? I am assuming it relates to
roaming profiles vs. local profiles but I am not certain. I also do not want
to create both profile settings if it is not necessary. 
List info   : http://www.activedir.org/List.aspx
List FAQ    : http://www.activedir.org/ListFAQ.aspx
List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/

Reply via email to