If the machine detects domain controllers on the network, it'll use the domain profile. Otherwise it uses the standard profile. You could have a more relaxed policy when the machine is "on the local LAN", and a tighter policy when the machine (presumably a laptop) is roaming on non-managed networks.
This setting is detailed in "theBookofsp1.doc" http://www.microsoft.com/downloads/details.aspx?FamilyID=c3c26254-8ce3-46e2-b 1b6-3659b92b2cde&DisplayLang=en but you need to look at the section on Unattended setup support for the Windows firewall to get a decent description. Cheers Ken ________________________________________ From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Todd Hofert Subject: [ActiveDir] Group Policy Object for Windows Firewall I am implementing Windows Firewall settings via an Active Directory Group Policy. I see there are two sets of settings; Domain Profile and Standard Profile with no explanation of how these settings differ. Can anyone explain which circumstances dictate which profile to use? I am assuming it relates to roaming profiles vs. local profiles but I am not certain. I also do not want to create both profile settings if it is not necessary. List info : http://www.activedir.org/List.aspx List FAQ : http://www.activedir.org/ListFAQ.aspx List archive: http://www.mail-archive.com/activedir%40mail.activedir.org/
