Disable: 'Windows Firewall: Domain: Apply local firewall rules' for AllowLocalPolicyMerge
This setting controls whether local administrators are allowed to create local firewall rules that apply together with firewall rules configured by Group Policy.
Counter Measure:
Disable this setting to override firewall rules created locally by administrators.
Potential Impact:
If you configure this setting to No, administrators can still create firewall rules, but the rules will not be applied. This setting is available only when configuring the policy through Group Policy.
[yes/no]
(1) GPO: Computer Configuration\Windows Settings\Security Settings\Windows Firewall with Advanced Security\Windows Firewall with Advanced Security\Windows Firewall Properties\Domain Profile\Windows Firewall: Domain: Apply local firewall rules
(2) REG: HKEY_LOCAL_MACHINE\Software\Policies\Microsoft\WindowsFirewall\DomainProfile\AllowLocalPolicyMerge
oval:org.secpod.oval:def:35159
SCAP Repo OVAL Definition
2016-06-10