Endpoint configuration · GraphQL type

FirewallPrivateProfile type

Windows Firewall configuration settings for the Private network profile. The Private profile applies when the endpoint is connected to a network that is identified as private, such as a home or work network.

Fields

Field Name Description
enableFirewall - Boolean! Indicates whether Windows Defender Firewall is turned on for the Private profile.
defaultInboundAction - FirewallTrafficAction! Default action for inbound network traffic that does not match any firewall rule.
defaultOutboundAction - FirewallTrafficAction! Default action for outbound network traffic that does not match any firewall rule.
disableNotifications - Boolean! Indicates whether Windows Firewall notifications are disabled for this profile. When true, users will not receive notifications when an application is blocked.
logFilePath - String! File system path where the firewall log file is stored.
logFileSize - Uint64! Maximum size of the firewall log file in kilobytes.
logDroppedPackets - Boolean! Indicates whether dropped packets are logged. When true, packets that are blocked by the firewall will be recorded in the log file.
logSuccessfulConnections - Boolean! Indicates whether successful connections are logged. When true, allowed connections will be recorded in the log file.

Used by

  • Security type: The security posture of an Endpoint: its firewall, anti-malware and disk encryption state, summarized as per-component health ratings in Health.

Example

Example

{
  "enableFirewall": false,
  "defaultInboundAction": "BLOCK_TRAFFIC",
  "defaultOutboundAction": "BLOCK_TRAFFIC",
  "disableNotifications": false,
  "logFilePath": "abc123",
  "logFileSize": "8589934592",
  "logDroppedPackets": true,
  "logSuccessfulConnections": false
}