Configure Windows 8 Firewall

Windows Firewall included with Windows 8 helps prevent unauthorized users or malicious software from accessing your computer. Windows Firewall does not allow traffic that was not sent in response to a request, to pass through the firewall.
To configure Windows Firewall, select Start > Control Panel > Large Icons View > Windows Firewall. Click Turn Windows Firewall On Or Off. This will prompt the Windows Firewall Settings dialog box.

The Windows Firewall Settings dialog box enables you to turn Windows Firewall on or off for both private and public networks. The On setting blocks external sources except those indicated on the Exceptions tab. The Off setting allows external sources to connect. There is also a check box for Block All Incoming Connections. This feature allows you to connect to networks that are not secure. When Block All Incoming Connections is enabled, exceptions are ignored and you receive no notification when an application is blocked by Windows Firewall.

The exceptions section of the Windows Firewall Settings dialog box allows you to classify which programs and services are allowed to pass through Windows Firewall. There is a defined list of programs and services you can choose from, or you can use the Add Another Program button to modify your exceptions. It is important that you enable exceptions carefully. Exceptions allow traffic to pass through the firewall, which can put your computer at risk due to the exposure. Remember that the Block All Incoming Connections setting ignores all exceptions.

Windows Firewall with Advanced Security
There are more advanced settings to be configured in Windows Firewall with Advanced Security (WFAS). To access Windows Firewall with Advanced Security, click Start > Control > Panel > Large Icons View > Windows Firewall and then click the Advanced Settings link. The Windows Firewall with Advanced Security on Local Computer dialog box appears and to the left on the scope pane shows that you can set up specific inbound and outbound rules, connection security rules, and monitoring rules. An overview of the firewall’s status and current profile settings is shown in the central area.

Windows 8 Firewall

Inbound and Outbound Rules
Inbound and outbound rules have many preconfigured rules that can be enabled or disabled. Inbound rules monitor inbound traffic and outbound rules monitor outbound traffic. Many are disabled through default. If you double-click a rule, this will prompt its Properties dialog box. The rules can be filtered for easier viewing. Filtering can be done based on the rules, whether enabled or disabled, of the affected profile, or based on the rule group. If you have trouble finding a rule that suits your needs, you can create a new rule by right-clicking Inbound Rules or Outbound Rules in the scope pane and selecting New Rule. This will launch the New Inbound or Outbound Rule Wizard and it will ask whether you want to create a rule based on a particular program, protocol or port, predefined category, or custom settings.

How to Create a New Inbound Rule Allowing for Only Encrypted TCP Traffic:
1. Select Start > Control Panel > Large Icon View > Windows Firewall.
2. Click Advanced Settings on the left-hand side.
3. Right-click Inbound Rules and select New Rule.
4. Choose a Rule Type. To see all available options, choose Custom and click Next.
5. Choose the programs or services affected by this rule and then click Next.
6. Choose the protocol type and the local and remote port numbers affected by this rule and click Next.
7. Choose the local and remote IP addresses affected by this rule and click Next.
8. Indicate if this rule will allow the connection, allow the connection only if it is secure, or block the connection and then click Next.
9. Indicate whether you want to allow connections from certain users only and click Next.
10. Indicate whether you want to allow connections from certain computers only and then click Next.
11. Choose which profiles will be affected by this rule. You can select more than one profile and click Next.
12. Name your profile, type in a description and then click Finish. Your custom rule appears in the list of Inbound Rules and the rule is enabled.
13. Double-click the new rule you just created. Note that previously configured options can be changed.
14. You can disable the rule by deselecting the Enabled check box. Click OK.

Windows 8 Firewall Advanced Security