Technical Tip: Understanding 'Windows Firewall is enabled' ZTNA tag rule
| Description | This article describes how to verify the Windows Firewall status for the 'Windows Firewall is enabled' ZTNA tag rule. |
| Scope | FortiClient v7.0, v7.2, and v7.4 onwards. |
| Solution | In FortiClient EMS, there is a ZTNA tag rule for the condition 'Windows Firewall is enabled'.
For an endpoint to be tagged properly, below criteria must be matched:
There may be rare cases whereby Firewall is showing 'enabled' in the GUI, but it is showing State = OFF in the command output.
FirewallPolicy\DomainProfile
Check the registry 'EnableFirewall' value = 1.
FirewallPolicy\StandardProfile
Check the registry 'EnableFirewall' value = 1.
FirewallPolicy\PublicProfile
Check the registry 'EnableFirewall' value = 1.
Check the registry 'Start' value = 2. |



