HEX
Server: Apache/2.4.46 (Win64) OpenSSL/1.1.1j PHP/8.4.25
System: Windows NT DESKTOP-4TAV2RJ 10.0 build 19045 (Windows 10) AMD64
User: fred (0)
PHP: 8.4.25
Disabled: NONE
Upload Files
File: C:/Windows/System32/zh-TW/authfwcfg.dll.mui
MZ����@���	�!�L�!This program cannot be run in DOS mode.

$5�<�q�R�q�R�q�R�e���p�R�e�P�p�R�Richq�R�PEL�!(

Pj�@ �$8.rdata�@@.rsrc0 &@@�'�C
T88�'�C$��8.rdata8x.rdata$zzzdbg P.rsrc$01P'��.rsrc$02 ��3/�8�2�w�
F��E��'�CH�(�@�h���#������������������(��@��X��p���������������������0��H��`��x������������������� ��8�-P�.h�/��0��1��2�����(8HXhx��������(8HXhx��������(8P'��(���-��H4���96�?���D���I���N��LOF��P���Q��DR"�hS��(UH�pa.��f���j��Pn��(r���ux�`|���������4��`���(��=�:�������d�nY��'L� *���.~�\2���6D�@<���@��MUI���D5�[U5�-I�It�RuY�b�_B/�������MUIzh-TWR
%1!s! -��[: 
----------------------------------------------------------------------*
�rKa                                  %1!s!'
2�kpFr�SGR                            %1!s!�
LocalFirewallRules                    %1!s!
LocalConSecRules                      %2!s!
InboundUserNotification               %3!s!
RemoteManagement                      %4!s!
UnicastResponseToMulticast            %5!s!
��:�
LogAllowedConnections                 %1!s!
LogDroppedConnections                 %2!s!
FileName                              %3!s!
MaxFileSize                           %4!s!
;N��!j_:�
KeyLifetime                           %1!u!min,%2!u!sess
SecMethods                            %3!s!
ForceDH                               %4!s!
IPsec:`
StrongCRLCheck                        %1!s!
SAIdleTimeMin                         %2!s!
DefaultExemptions                     %3!s!
IPsecThroughNAT                       %4!s!
AuthzUserGrp                          %5!s!
AuthzComputerGrp                      %6!s!
AuthzUserGrpTransport                 %7!s!
AuthzComputerGrpTransport             %8!s!,
StatefulFTP                           %1!s!,
StatefulPPTP                          %1!s!'
�SGRX[>e@S                            %1!s!�}�W-��[�j�y�N-��[�j�]\P(u8h�S7_6Ro
��GR
T1z:                             %1!s!
----------------------------------------------------------------------*
�c�:                                 %1!s!*
_U(u:                                 %1!s!)
-��[�j:                               %1!s!*
^��W:                                 %1!s!,
LocalTunnelEndpoint:                  %1!s!PA,
RemoteTunnelEndpoint:                 %1!s!,
InterfaceTypes:                       %1!s!*
�zޞ 1:                               %1!s!*
�zޞ 2:                               %1!s!*
�zޞ1:                                %1!s!*
�zޞ2:                                %1!s!(
�
�TS�[:                             %1!s!*
�R\O:                                 %1!s!,
Auth1:                                %1!s!,
Auth1PSK:                             %1!s!,
Auth1CAName:                          %1!s!,
Auth1CertMapping:                     %1!s!,
Auth1ExcludeCAName:                   %1!s!,
Auth1HealthCert:                      %1!s!,
Auth2:                                %1!s!,
Auth2CAName:                          %1!s!,
Auth2CertMapping:                     %1!s!,
Auth2HealthCert:                      %1!s!,
MainModeSecMethods:                   %1!s!9
MainModeKeyLifetime:                  %1!u!min,%2!u!sess,
QuickModeSecMethods:                  %1!s!,
QuickModePFS:                         %1!s!�vMR�v-��[�j
Ni�(u (�PP� GPO X[>e@S)
�]�}*Rd� %1!u! ��GR0

�]�}�f�e %1!u! ��GR0
*
!j_:                                 %1!s!o
��GR
T1z:                             %1!s!
----------------------------------------------------------------------*
�c�:                                 %1!s!*
�D}:                                 %1!s!*
_U(u:                                 %1!s!)
-��[�j:                               %1!s!PA,
LocalIP:                              %1!s!,
RemoteIP:                             %1!s!'
,g_j#��c�W:                           %1!s!'
`��z#��c�W:                           %1!s!(
�
�TS�[:                             %1!s!*
z_:                                 %1!s!*

g�R:                                 %1!s!,
InterfaceTypes:                       %1!s!,
RemoteComputerGroup:                  %1!s!,
RemoteUserGroup:                      %1!s!)
�[hQ'`:                               %1!s!*
�R\O:                                 %1!s!n
(W %1!s! �v;N��!j_ SA                      
----------------------------------------------------------------------(
,g_j IP MO@W:                         %1!s!(
`��z IP MO@W:                         %1!s!,
Auth1:                                %1!s!PA,
Auth2:                                %1!s!*
MM �c�O:                              %1!s!%
Cookie ٖ
\:                          &
eP�^�`�l�aI�:                         %1!s!m
(W %1!s! �v�_�!j_ SA                     
----------------------------------------------------------------------(
,g_j IP MO@W:                         %1!s!(
`��z IP MO@W:                         %1!s!'
,g_j#��c�W:                           %1!s!'
`��z#��c�W:                           %1!s!(
�
�TS�[:                             %1!s!*
�eT:                                 %1!s!*
QM �c�O:                              %1!s!
�]�}*Rd� %1!u! SA0
�RKaX[>e@S 
�V�p %1!u! �RKa��GR&N^��O��RKaX[>e@S�@b�N�N�*Rd�0
\*g-��[PA.
�V�p(Wc�[ GPO X[>e@S-N�v %1!s! MainMode -��[\*g-��[�@b�N!q�lo�:y0
~b0RNR
T1z�p "%1!s!" �v GPO:

O(uvQ-NNP GPO ID ��X�@b��v GPO0
,
PFS:                                  %1!s!�
KeyLifetime                           %1!s!
SecMethods                            %2!s!
ForceDH                               %3!s!�bU}X[�S 
�V�p %1!u! �RKa��GR&N^��O��RKaX[>e@S�@b�N�N��f�e0
lQ(u-��[�j(
"uu Consec ��GR:                     %1!s!/
                                      ^��W    �N�x9
                                      %1!-4s!    %2!-4s!(
���}hTJ�:                             %1!s!*
�eT:                                 %1!s!'
Auth1 ,g_jX�%R�x:                     %1!s!'
Auth1 `��zX�%R�x:                     %1!s!
NfPA!q8l
N
NAT KN�_�v:O
ghVNAT KN�_�v:O
ghV�T(u6b�zܕ����_UAQ1�\��euN�(W��Q/f&T�NN�(uGPOPA,g_jMicrosoft Store_U(u\P(uR�RequireInRequestOutRequestInRequestOutRequireInRequireOutNoAuthenticationDHGroup1DHGroup2	DHGroup14ECDHP256ECDHP384MainMode�RKaPA\�Ka�S��P8�iQ��v�SComputerKerbComputerCertComputerPSKComputerNTLM?S
TUserCertUserKerbUserNTLM3DESDESAES128AES192AES256MD5SHA1TCPUDPICMPv4ICMPv6AHESPNeighborDiscoveryICMPW�I�AuthEncNotRequired!q�}LANRAS�}�W�y�NlQ(uBlockInboundBlockInboundAlwaysAllowInbound
BlockOutbound
AllowOutbound:,-+%umin%ukb'
Auth2 ,g_jX�%R�x:                     %1!s!PA'
Auth2 `��zX�%R�x:                     %1!s!%1!02x!ComputerCertECDSAP256ComputerCertECDSAP384UserCertECDSAP256UserCertECDSAP384	AESGCM128	AESGCM192	AESGCM256SHA256SHA384	AESGCM128	AESGCM192	AESGCM256
AESGMAC128
AESGMAC192
AESGMAC256�
Auth1ECDSAP256CAName:                 %1!s!
Auth1ECDSAP256CertMapping:            %2!s!
Auth1ECDSAP256ExcludeCAName:          %3!s!
Auth1ECDSAP256CertType:               %4!s!
Auth1ECDSAP256HealthCert:             %5!s!�
Auth1ECDSAP384CAName:                 %1!s!
Auth1ECDSAP384CertMapping:            %2!s!
Auth1ECDSAP384ExcludeCAName:          %3!s!
Auth1ECDSAP384CertType:               %4!s!
Auth1ECDSAP384HealthCert:             %5!s!�
Auth2ECDSAP256CAName:                 %1!s!
Auth2ECDSAP256CertMapping:            %2!s!
Auth2ECDSAP256CertType:               %3!s!
Auth2ECDSAP256HealthCert:             %4!s!�
Auth2ECDSAP384CAName:                 %1!s!
Auth2ECDSAP384CertMapping:            %2!s!
Auth2ECDSAP384CertType:               %3!s!
Auth2ECDSAP384HealthCert:             %4!s!�
Auth2ECDSAP256CAName:                 %1!s!
Auth2ECDSAP256CertMapping:            %2!s!
Auth2ECDSAP256CertType:               %3!s!�
Auth2ECDSAP384CAName:                 %1!s!
Auth2ECDSAP384CertMapping:            %2!s!
Auth2ECDSAP384CertType:               %3!s!O
%1!s!: 
----------------------------------------------------------------------
%1!s!

AuthDynEnc�
BootTimeRuleCategory                  %1!s!
FirewallRuleCategory                  %2!s!
StealthRuleCategory                   %3!s!
ConSecRuleCategory                    %4!s!Windows Defender 2�kpFr
^�%R:o
��GR
T1z:                             %1!s!
----------------------------------------------------------------------*
�c�:                                 %1!s!)
-��[�j:                               %1!s!9
KeyLifetime:                          %1!u!min,%2!u!sess*
�zޞ 1:                               %1!s!*
�zޞ 2:                               %1!s!,
Auth1:                                %1!s!,
Auth1PSK:                             %1!s!,
Auth1CAName:                          %1!s!,
Auth1CertMapping:                     %1!s!,
Auth1ExcludeCAName:                   %1!s!,
Auth1HealthCert:                      %1!s!,
SecMethods:                           %1!s!*
_U(u:                                 %1!s! 
�c6e1YWe                    : %1!S! 
�P�1YWe                    : %1!S!
�d�SXMz'Y\                : %1!S!
�c6eXMz'Y\                : %1!S! 
�N�m1YWe                    : %1!S!PA
�c6e0R
Nck�x�v Cookie       : %1!S! 
=~qQ�d�S                    : %1!S!$
TotalGetSpi                 : %1!S!$
TotalKeyAdd                 : %1!S!$
TotalKeyUpdate              : %1!S!$
GetSpiFail                  : %1!S!$
KeyAddFail                  : %1!S!$
KeyUpdateFail               : %1!S!$
IsadbListSize               : %1!S!$
ConnListSize                : %1!S!
�c6e0R
Nck�x�v\S          : %1!S!



IPsec q}�
----------------

IPsec q}�!q�lO(u0

O(u-Nܕo�                  : %1!S!"
xS	� SA                     : %1!S!PA 
�dnёp�                    : %1!S! 
ёp��e�X                    : %1!S! 
ёp�*Rd�                    : %1!S! 
{v�_j�x                    : %1!S!
O(u-N�S�                  : %1!S!

No��v SPI \S             : %1!S!
\S�l	g��[                : %1!S!
\S�l	gW�I�                : %1!S!
	g͑�e�WL�uP,n�v\S        : %1!S!
�]�P��v_j�[MOCQD}          : %1!S!
�]�c6e�v_j�[MOCQD}          : %1!S!
�]�P��vW�I�MOCQD}          : %1!S!
�]�c6e�vW�I�MOCQD}          : %1!S!
�]�P��v�P8�MOCQD}          : %1!S!
�]�c6e�v�P8�MOCQD}          : %1!S!
�]�P��vxS	�MOCQD}          : %1!S!PA
�]�c6e�vxS	�MOCQD}          : %1!S!

�]�P�0R�S��vMOCQD}        : %1!S!
�S���]�c�S�vMOCQD}        : %1!S!
IKE q}�
-------------- 


IKE q}�!q�lO(u0
 
;N��!j_                    : %1!S! 
�_�!j_                    : %1!S!#
ߎ SA                       : %1!S! 
W�I�1YWe                    : %1!S!
O(u-N�d�S                  : %1!S!
O(u-N�c6e                  : %1!S! 
�d�S1YWe                    : %1!S!(
��GR�O�n:                             %1!s!
�_�!j_:X
QuickModeSecMethods                   %1!s!
QuickModePFS                          %2!s!
�[hQ'`ܕo�:*
GPO 
T1z                              %1!s!O
hQ�W�SGR�rKa:
----------------------------------------------------------------------_
Windows Defender 2�kpFr��GR:
----------------------------------------------------------------------	
#��}�[hQ'`��GR:,
Auth1CertType:                        %1!s!,
Auth2CertType:                        %1!s!AuthNoEncap,
ExemptIPsecProtectedConnections:      %1!s!RequireInClearOut,
ApplyAuthorization:                   %1!s!�Y�f}�a(uz_�Y�f}O(u��bU},g_j�D}�SGR-��[,g_j-��[PA�RKa-��[,
ForceDH:                              %1!s!
;N��!j_��GR:DHCP�D}�SGR-��[�
'netsh advfirewall dump' }T�N*g�[\O�edk Windows Hr,g-N0ˊ9e�pO(u
'netsh advfirewall export' }T�N�\�vMRwQ	g2����[hQ'`�v Windows Defender 2�kpFr
-��[�_�vMR�v�SGRX[>e@S-N�[eQ0R�x�x
N�v�jHh0�`�S�N�cW�O(u
'netsh advfirewall import' ���Sr��jHh�&N\r��jHh	�eQ0R�SNP�SGRX[>e@S�
�O�Y�D}�SGRir�Nb�SN��f�
N�vMR�v�SGRX[>e@S0傁�-��[�vMR�v�SGRX[>e@S�
ˊO(u 'netsh advfirewall set store' }T�N0
�Y� netsh advfirewall gQ�[-N�v}T�Ns�0}nj
��ˊ�S���NN�}@W�v0wQ	g2����[hQ'`
�v Windows Defender 2�kpFri�(u�v Netsh }T�N
0:
https://go.microsoft.com/fwlink/?linkid=1112370	DHGroup24ComputerNegoEx
UserNegoEx,
Auth1CriteriaType:                    %1!s!,
Auth1CertNameType:                    %1!s!,
Auth1CertName:                        %1!s!,
Auth1CertEku:                         %1!s!,
Auth1CertHash:                        %1!s!,
Auth1FollowCertRenewal:               %1!s!,
Auth1ECDSAP256CriteriaType:           %1!s!,
Auth1ECDSAP256CertNameType:           %1!s!,
Auth1ECDSAP256CertName:               %1!s!,
Auth1ECDSAP256CertEku:                %1!s!,
Auth1ECDSAP256CertHash:               %1!s!,
Auth1ECDSAP256FollowCertRenewal:      %1!s!,
Auth1ECDSAP384CriteriaType:           %1!s!,
Auth1ECDSAP384CertNameType:           %1!s!,
Auth1ECDSAP384CertName:               %1!s!,
Auth1ECDSAP384CertEku:                %1!s!,
Auth1ECDSAP384CertHash:               %1!s!,
Auth1ECDSAP384FollowCertRenewal:      %1!s!,
Auth2CriteriaType:                    %1!s!,
Auth2CertNameType:                    %1!s!,
Auth2CertName:                        %1!s!,
Auth2CertEku:                         %1!s!,
Auth2CertHash:                        %1!s!,
Auth2FollowCertRenewal:               %1!s!,
Auth2ECDSAP256CriteriaType:           %1!s!,
Auth2ECDSAP256CertNameType:           %1!s!,
Auth2ECDSAP256CertName:               %1!s!,
Auth2ECDSAP256CertEku:                %1!s!,
Auth2ECDSAP256CertHash:               %1!s!,
Auth2ECDSAP256FollowCertRenewal:      %1!s!,
Auth2ECDSAP384CriteriaType:           %1!s!,
Auth2ECDSAP384CertNameType:           %1!s!,
Auth2ECDSAP384CertName:               %1!s!,
Auth2ECDSAP384CertEku:                %1!s!,
Auth2ECDSAP384CertHash:               %1!s!,
Auth2ECDSAP384FollowCertRenewal:      %1!s!,
Auth1KerbProxyFQDN:                   %1!s!,
Auth1ProxyServerFQDN:                 %1!s!,
Auth2ProxyServerFQDN:                 %1!s!
��f��c
k SDDL            %1!s!
O(u��c
k SDDL               %1!s!\�SGR͑-��p�-��SGR0
!
O(u�e_:  reset [export <path\filename>]

�P;�:

      - \0wQ	g2����[hQ'`�v Windows Defender 2�kpFr
0�SGR���S�p�-��SGR0�`�S�N
        \�vMRO(u-N�v�SGRx��d'`0W/S�Q0Rc�[�v�jHh0
      - (W�D}�SGRir�N-N�dk}T�Ng\@b	g-��[���S�p notconfigured�&N*R
        d�@b	g#��}�[hQ'`�2�kpFr��GR0

�{�O:

      �P�N�vMR�v�SGR�&N���S�p�-��SGR:
      netsh advfirewall reset export "c:\backuppolicy.wfw"-��[�kP-��[�jb�(u-��[0
-��[�}�W-��[�j�vgQ�[0
�
O(u�e_:  set domainprofile (parameter) (value)

parameter:

      state             - -��[2�kpFr�rKa0
              O(u�e_: state on|off|notconfigured

      firewallpolicy    - -��[�-��v8�eQ�8��QL��p0
      O(u�e_: firewallpolicy (inbound behavior),(outbound behavior)
         Inbound behavior:
            blockinbound        - \��
N&{T�NUO8�eQ��GR�v8�eQ#��}0
            blockinboundalways  - sSO#��}&{T�gP��GR�_Ng\��@b	g8�eQ
                                  #��}0
            allowinbound        - AQ1�
N&{T�NUO��GR�v8�eQ#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0
         Outbound behavior:
            allowoutbound       - AQ1�
N&{T�NUO��GR�v8��Q#��}0
            blockoutbound       - \��
N&{T�NUO��GR�v8��Q#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0

      settings          - -��[2�kpFr-��[0
      O(u�e_: settings (parameter) enable|disable|notconfigured
      parameter:
         localfirewallrules         - TuO,g_j2�kpFr��GR��D}�SGR��GR0-��[
                                      �D}�SGRX[>e@SBf	gHe0
         localconsecrules           - TuO,g_j#��}�[hQ'`��GR��D}�SGR��GR0
                                      -��[�D}�SGRX[>e@SBf	gHe0
         inboundusernotification    - vuz_�c}�8�eQ#��}Bf��wO(u�0
         remotemanagement           - AQ1��_`��z�{t Windows 2�kpFr0
         unicastresponsetomulticast - �c6RYޞ�P�KN�S-��[�rKa�v�Uޞ�P�d�V�a0

      logging           - -��[��-��[0
      O(u�e_: logging (parameter) (value)
      parameter:
         allowedconnections  - ��AQ1��v#��}0
                               Values: enable|disable|notconfigured
         droppedconnections  - ��>e�h�v#��}0
                               Values: enable|disable|notconfigured
         filename            - 2�kpFr���j�v
T1z�MOn0
                               Values: <string>|notconfigured
         maxfilesize         - ���j'Y\
NP� (�UMO: KB)0
                               Values: 1 - 32767|notconfigured

�P;�:

      - -��[�}�W-��[�j-��[0
      - "notconfigured" <P�P
\�e�D}�SGRX[>e@S	gHe0

�{�O:

      �}�W-��[�j�p\O(u-N�rKaBfܕ��2�kpFr:
      netsh advfirewall set domainprofile state off

      �}�W2�kpFr�p\O(u-N�rKaBf�-��[�-�L��p�N\��8�eQ#��}�&NAQ1�8��Q#��}:
      netsh advfirewall set domainprofile firewallpolicy
      blockinbound,allowoutbound

      �}�W-��[�j�p\O(u-N�rKaBf���_U`��z�{t:
      netsh advfirewall set domainprofile settings remotemanagement enable

      �}�W-��[�j�p\O(u-N�rKaBf���>e�h�v#��}:
      netsh advfirewall set domainprofile logging droppedconnections enable
-��[�y�N-��[�j�vgQ�[0
�
O(u�e_:  set privateprofile (parameter) (value)

Parameters:

      state             - -��[2�kpFr�rKa0
              O(u�e_: state on|off|notconfigured

      firewallpolicy    - -��[�-��v8�eQ�8��QL��p0
      O(u�e_: firewallpolicy (inbound behavior),(outbound behavior)
         Inbound behavior:
            blockinbound        - \��
N&{T�NUO8�eQ��GR�v8�eQ#��}0
            blockinboundalways  - sSO#��}&{T�gP��GR�_Ng\��@b	g8�eQ#��}0
            allowinbound        - AQ1�
N&{T�NUO��GR�v8�eQ#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0
         Outbound behavior:
            allowoutbound       - AQ1�
N&{T�NUO��GR�v8��Q#��}0
            blockoutbound       - \��
N&{T�NUO��GR�v8��Q#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0

      settings          - -��[2�kpFr-��[0
      O(u�e_: settings (parameter) enable|disable|notconfigured
      Parameters:
         localfirewallrules         - TuO,g_j2�kpFr��GR��D}�SGR��GR0-��[
                                      �D}�SGRX[>e@SBf	gHe0
         localconsecrules           - TuO,g_j#��}�[hQ'`��GR��D}�SGR��GR0
                                      -��[�D}�SGRX[>e@SBf	gHe0
         inboundusernotification    - vuz_�c}�8�eQ#��}Bf��wO(u�0
         remotemanagement           - AQ1��_`��z�{t Windows 2�kpFr0
         unicastresponsetomulticast - �c6RYޞ�P�KN�S-��[�rKa�v�Uޞ�P�d�V�a0

      logging           - -��[��-��[0
      O(u�e_: logging (parameter) (value)
      Parameters:
         allowedconnections  - ��AQ1��v#��}0
                               Values: enable|disable|notconfigured
         droppedconnections  - ��>e�h�v#��}0
                               Values: enable|disable|notconfigured
         filename            - 2�kpFr���j�v
T1z�MOn0
                               Values: <string>|notconfigured
         maxfilesize         - ���j'Y\
NP� (�UMO: KB)0
                               Values: 1 - 32767|notconfigured

�P;�:

      - -��[�y�N-��[�j-��[0
      - "notconfigured" <P�P
\�e�D}�SGRX[>e@S	gHe0

�{�O:

      �y�N-��[�j�p\O(u-N�rKaBfܕ��2�kpFr:
      netsh advfirewall set privateprofile state off

      �y�N-��[�j�p\O(u-N�rKaBf�-��[�-�L��p�N\��8�eQ#��}�&NAQ1�8��Q#��}:
      netsh advfirewall set privateprofile firewallpolicy
      blockinbound,allowoutbound

      �y�N-��[�j�p\O(u-N�rKaBf���_U`��z�{t:
      netsh advfirewall set privateprofile settings remotemanagement enable

      �y�N-��[�j�p\O(u-N�rKaBf���>e�h�v#��}:
      netsh advfirewall set privateprofile logging droppedconnections enable

-��[O(u-N-��[�j�vgQ�[0
�
O(u�e_:  set currentprofile (parameter) (value)

Parameters:

      state             - -��[2�kpFr�rKa0
              O(u�e_: state on|off|notconfigured

      firewallpolicy    - -��[�-��v8�eQ�8��QL��p0
      O(u�e_: firewallpolicy (inbound behavior),(outbound behavior)
         Inbound behavior:
            blockinbound        - \��
N&{T�NUO8�eQ��GR�v8�eQ#��}0
            blockinboundalways  - sSO#��}&{T�gP��GR�_Ng\��@b	g8�eQ#��}0
            allowinbound        - AQ1�
N&{T�NUO��GR�v8�eQ#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0
         Outbound behavior:
            allowoutbound       - AQ1�
N&{T�NUO��GR�v8��Q#��}0
            blockoutbound       - \��
N&{T�NUO��GR�v8��Q#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0

      settings          - Configures firewall settings.
      O(u�e_: settings (parameter) enable|disable|notconfigured
      Parameters:
         localfirewallrules         - TuO,g_j2�kpFr��GR��D}�SGR��GR0
                                      -��[�D}�SGRX[>e@SBf	gHe0
         localconsecrules           - TuO,g_j#��}�[hQ'`��GR��D}�SGR��GR0
                                      -��[�D}�SGRX[>e@SBf	gHe0
         inboundusernotification    - vuz_�c}�8�eQ#��}Bf��wO(u�0
         remotemanagement           - AQ1��_`��z�{t Windows 2�kpFr0
         unicastresponsetomulticast - �c6RYޞ�P�KN�S-��[�rKa�v�Uޞ�P�d�V�a0

      logging           - -��[��-��[0
      O(u�e_: logging (parameter) (value)
      Parameters:
         allowedconnections  - ��AQ1��v#��}0
                               Values: enable|disable|notconfigured
         droppedconnections  - ��>e�h�v#��}0
                               Values: enable|disable|notconfigured
         filename            - 2�kpFr���j�v
T1z�MOn0
                               Values: <string>|notconfigured
         maxfilesize         - ���j'Y\
NP� (�UMO: KB)0
                               Values: 1 - 32767|notconfigured

�P;�:

      - -��[�vMR\O(u-NKN-��[�j�v-��[�j-��[0
      - "notconfigured" <P�P
\�e�D}�SGRX[>e@S	gHe0

�{�O:

      ܕ���vMR\O(u-N-��[�j�v2�kpFr:
      netsh set advfirewall currentprofile state off

      -��[�-�L��p��N\���vMR\O(u-N-��[�j�v8�eQ#��}�&NAQ1�8��Q#��}:
      netsh advfirewall set currentprofile firewallpolicy
      blockinbound,allowoutbound

      ��_U�vMR\O(u-N-��[�j�v`��z�{t:
      netsh advfirewall set currentprofile settings remotemanagement enable

      ���vMR\O(u-N-��[�j
N>e�h�v#��}:
      netsh advfirewall set currentprofile logging droppedconnections enable
-��[@b	g-��[�j�vgQ�[0
d
O(u�e_:  set allprofiles (parameter) (value)

Parameters:

      state             - -��[2�kpFr�rKa0
              O(u�e_: state on|off|notconfigured

      firewallpolicy    - -��[�-��v8�eQ�8��QL��p0
      O(u�e_: firewallpolicy (inbound behavior),(outbound behavior)
         Inbound behavior:
            blockinbound        - \��
N&{T�NUO8�eQ��GR�v8�eQ#��}0
            blockinboundalways  - sSO#��}&{T�gP��GR�_Ng\��@b	g8�eQ#��}0
            allowinbound        - AQ1�
N&{T�NUO��GR�v8�eQ#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0
         Outbound behavior:
            allowoutbound       - AQ1�
N&{T�NUO��GR�v8��Q#��}0
            blockoutbound       - \��
N&{T�NUO��GR�v8��Q#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0

      settings          - -��[2�kpFr-��[0
      O(u�e_: settings (parameter) enable|disable|notconfigured
      Parameters:
         localfirewallrules         - TuO,g_j2�kpFr��GR��D}�SGR��GR0
                                      -��[�D}�SGRX[>e@SBf	gHe0
         localconsecrules           - TuO,g_j#��}�[hQ'`��GR��D}�SGR��GR0
                                      -��[�D}�SGRX[>e@SBf	gHe0
         inboundusernotification    - vuz_�c}�8�eQ#��}Bf��wO(u�0
         remotemanagement           - AQ1��_`��z�{t Windows 2�kpFr0
         unicastresponsetomulticast - �c6RYޞ�P�KN�S-��[�rKa�v�Uޞ�P�d�V�a0

      logging           - -��[��-��[0
      O(u�e_: logging (parameter) (value)
      Parameters:
         allowedconnections  - ��AQ1��v#��}0
                               Values: enable|disable|notconfigured
         droppedconnections  - ��>e�h�v#��}0
                               Values: enable|disable|notconfigured
         filename            - 2�kpFr���j�v
T1z�MOn0
                               Values: <string>|notconfigured
         maxfilesize         - ���j'Y\
NP� (�UMO: KB)0
                               Values: 1 - 32767|notconfigured

�P;�:

      - -��[@b	g-��[�j�v-��[�j-��[0
      - "notconfigured" <P�P
\�e�D}�SGRX[>e@S	gHe0

�{�O:

      ܕ��@b	g-��[�j�v2�kpFr:
      netsh advfirewall set allprofiles state off

      -��[�-�L��p��N\��@b	g-��[�j�v8�eQ#��}�&NAQ1�8��Q#��}:
      netsh advfirewall set allprofiles firewallpolicy
      blockinbound,allowoutbound

      ��_U@b	g-��[�j�v`��z�{t:
      netsh advfirewall set allprofiles settings remotemanagement enable

      ��@b	g-��[�j
N>e�h�v#��}:
      netsh advfirewall set allprofiles logging droppedconnections enable
-��[�(ugQ�[0


O(u�e_: set global statefuftp|statefulpptp enable|disable|notconfigured
          set global ipsec (parameter) (value)
          set global mainmode (parameter) (value) | notconfigured

IPsec �Sxe:

      strongcrlcheck    - -��[7_6R�WL� CRL �j�g�v�e_0
                          0: \P(u CRL �j�g (�-�)
                          1: �aI��]�d��Bf�P�V1YWe
                          2: |vu�NUO/���Bf�P�V1YWe
                          notconfigured: \<P���S�pvQ*g-��[�v�rKa0
      saidletimemin     - -��[�[hQ'`ܕo���nBf�� (�UMO: R�)0
                        - O(u�e_: 5-60|notconfigured (�-�<P=5)
      defaultexemptions - -��[�-��v IPsec A�MQ0�-�/f\ IPv6
                          neighbordiscovery �
�TS�[� DHCP �_ IPsec A�MQ0
                        - O(u�e_: none|neighbordiscovery|icmp|dhcp|notconfigured
      ipsecthroughnat   - -��[UOBf�S�N�T�}@WI�o�hV�_b��v��f��^�z�[hQ'`ܕo�0
                        - O(u�e_: never|serverbehindnat|
                                 serverandclientbehindnat|
                                 notconfigured(default=never)
      authzcomputergrp  - -��[	g
k�^�z�S�!j_#��}�v��f�0
                        - O(u�e_: none|<SDDL W[2N>|notconfigured
      authzusergrp      - -��[	g
k�^�z�S�!j_#��}�vO(u�0
                        - O(u�e_: none|<SDDL W[2N>|notconfigured


;N��!j_�Sxe:

      mmkeylifetime     - �NR��S (b) �]\O���k�-��[;N��!j_ёp�X[Yug<P0
                        - O(u�e_: <num>min,<num>sess
                          minlifetime: <1> min,
                          maxlifetime: <2880> min
                          minsessions: <0> sessions,
                          maxsessions: <2,147,483,647> sessions
      mmsecmethods      - -��[�cp��v;N��!j_n�U
                        - O(u�e_:
                          keyexch:enc-integrity,keyexch:enc-integrity[,...]|default
                        - keyexch=dhgroup1|dhgroup2|dhgroup14|dhgroup24|
                          ecdhp256|ecdhp384
                        - enc=3des|des|aes128|aes192|aes256
                        - integrity=md5|sha1|sha256|sha384
      mmforcedh         - -��[x���NO(u DH �Ow�ёp��N�c�v�[hQ0
                        - O(u�e_:
                          yes|no (�-�<P=no)

�P;�:

      - -��[hQ�W-��[�S�b2��� IPsec x��0
      - 
N�^p�O(u DES0MD5 �N�S DHGroup10��N�R�[�}o�o�{�l�P�O�V�n�v�['`
        KN(u0
      - ܕu�W[ mmsecmethods �-�g\�SGR-��[�p:
        dhgroup2-aes128-sha1,dhgroup2-3des-sha1

�{�O:

      \P(u CRL �j�g:
      netsh advfirewall set global ipsec strongcrlcheck 0

      �p�S-��[�rKa�v FTP ��_U2�kpFr/e�c:
      netsh advfirewall set global statefulftp enable

      \hQ�W;N��!j_�cp�-��[�p�-�<P:
      netsh advfirewall set global mainmode mmsecmethods default

      \hQ�W;N��!j_�cp�-��[�p�[6bn�U:
      netsh advfirewall set global mainmode mmsecmethods
      dhgroup1:des-md5,dhgroup1:3des-sha1-��[�vMR�N�R_�]\O���k�v�SGRX[>e@S0
�
O(u�e_: set store local|gpo=<computer name>|gpo=<domain\GPO name>|
          gpo=<domain\GPO unique ID>

�P;�:

      - \�SGRX[>e@S-��[�D}�SGRir�N (GPO)�dk�D}�SGRir�N�S1u��f�
T1z0�}�W
        � GPO 
T1z0GPO /UNX�%R�xb,g_j�SGRX[>e@S��X�
      - �-�<P/f local0
      - �`�_�\PYu(W�vT�v�N�R_�]\O���k�&TGRX[>e@S-��[\gz�1Y0
      - c�[�}�W
T1zBf��_�8�eQ�[teT<h�v�}�W
T1z (FQDN)0

�{�O:

      \�SGRX[>e@S-��[� computer1 
N�v GPO:
      netsh advfirewall set store gpo=computer1

      \�SGRX[>e@S-��[� office �}�W-N
T�p laptops �v GPO:
      netsh advfirewall set store gpo=office.acme.com\laptops

      \�SGRX[>e@S-��[� office �v�}�W-N�/UNX�%R�x�p
      {842082DD-7501-40D9-9103-FE3A31AFDC9B} �v GPO:
      netsh advfirewall set store
      gpo=office.acme.com\{842082DD-7501-40D9-9103-FE3A31AFDC9B}o�:y-��[�jb�(ugQ�[0
o�:y�}�WgQ�[�vgQ�[0
r
O(u�e_: show domainprofile [parameter]

�Sxe:

      state             - o�:y0wQ	g2����[hQ'`�v Windows Defender 2�kpFr
0�v��_Ub
                          ܕ���rKa0
      firewallpolicy    - o�:y�-�8�eQ�8��Q2�kpFrL��p0
      settings          - o�:y2�kpFrgQ�[0
      logging           - o�:y��-��[0

�P;�:

      - o�:y�}�W-��[�j�vgQ�[0�*gc�[�NUO�Sxe�GRgo�:y@b	ggQ�[0

�{�O:

      o�:y�}�W-��[�j�v2�kpFr�rKa:
      netsh advfirewall show domainprofile stateo�:y�y�N-��[�j�vgQ�[0
t
O(u�e_: show privateprofile [parameter]

�Sxe:

      state             - o�:y0wQ	g2����[hQ'`�v Windows Defender 2�kpFr
0�v��_Ub
                          ܕ���rKa0
      firewallpolicy    - o�:y�-�8�eQ�8��Q2�kpFrL��p0
      settings          - o�:y2�kpFrgQ�[0
      logging           - o�:y��-��[0

�P;�:

      - o�:y�y�N-��[�j�vgQ�[0�*gc�[�NUO�Sxe�GRgo�:y@b	ggQ�[0

�{�O:

      o�:y�y�N-��[�j�v2�kpFr�rKa:
      netsh advfirewall show privateprofile state
o�:yO(u-N-��[�j�vgQ�[0
v
O(u�e_: show currentprofile [parameter]

�Sxe:

      state             - o�:y0wQ	g2����[hQ'`�v Windows Defender 2�kpFr
0�v��_Ub
                          ܕ���rKa0
      firewallpolicy    - o�:y�-�8�eQ�8��Q2�kpFrL��p0
      settings          - o�:y2�kpFrgQ�[0
      logging           - o�:y��-��[0

�P;�:

      - o�:y\O(u-N-��[�j�vgQ�[0�*gc�[�NUO�Sxe�GRgo�:y@b	ggQ�[0

�{�O:

      o�:y\O(u-N-��[�j�v2�kpFr�rKa:
      netsh advfirewall show currentprofile stateo�:y@b	g-��[�j�vgQ�[0
n
O(u�e_: show allprofiles [parameter]

�Sxe:

      state             - o�:y0wQ	g2����[hQ'`�v Windows Defender 2�kpFr
0�v��_Ub
                          ܕ���rKa0
      firewallpolicy    - o�:y�-�8�eQ�8��Q2�kpFrL��p0
      settings          - o�:y2�kpFrgQ�[0
      logging           - o�:y��-��[0

�P;�:

      - o�:y@b	g-��[�j�vgQ�[0�*gc�[�NUO�Sxe�GRgo�:y@b	ggQ�[0

�{�O:

      o�:y@b	g-��[�j�v2�kpFr�rKa:
      netsh advfirewall show allprofiled stateo�:y�(ugQ�[0
	
O(u�e_: show global [property]

�Sxe:

      ipsec             - o�:y IPsec yr�[-��[0
      statefulftp       - o�:y�S-��[�rKa�v ftp /e�c0
      statefulpptp      - o�:y�S-��[�rKa�v pptp /e�c0
                          dk<P(W Windows 7 -Ng���_eu��N�S��(u�e�{t
�HrwQ
                          	g2����[hQ'`�|q}�v Windows Defender 2�kpFr0
      mainmode          - o�:y;N��!j_-��[0
      categories        - o�:y2�kpFr^�%R0

�P;�:

      - o�:y�(ugQ�[-��[0�*gc�[�NUO�Sxe�GRgo�:y@b	ggQ�[0

�{�O:

      o�:y IPsec -��[:
      netsh advfirewall show global ipsec

      o�:y;N��!j_-��[:
      netsh advfirewall show global mainmodeo�:y�vMR�N�R_�]\O���k�v�SGRX[>e@S0
X
O(u�e_: show store

�P;�:

      - dk}T�N�So�:y�vMR�v�SGRX[>e@S0

�{�O:

      netsh advfirewall show store\�SGR�jHh/SeQ0R�vMR�v�SGRX[>e@S0
o
O(u�e_: import <path\filename>

�P;�:

      - �_c�[�v�jHh/SeQ�SGR0

�{�O:

      netsh advfirewall import "c:\newpolicy.wfw"/S�Q�vMR�SGR0R�jHh0
{
O(u�e_: export <path\filename>

�P;�:

      - \�vMR�v�SGR/S�Q0Rc�[�v�jHh0

�{�O:

      netsh advfirewall export "c:\advfirewallpolicy.wfw"PA
�e�X�e�v#��}�[hQ'`��GR0
�p�s	g��GR�vgQ�[-��[�e<P0
*Rd�@b	g&{T�v#��}�[hQ'`��GR0
/
O(u�e_: delete rule name=<string>
      [type=dynamic|static]
      [profile=public|private|domain|any[,...] (default=any)]
      [endpoint1=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [endpoint2=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [port1=0-65535|<port range>[,...]|any (default=any)]
      [port2=0-65535|<port range>[,...]|any (default=any)]
      [protocol=0-255|tcp|udp|icmpv4|icmpv6|any]

�P;�:

      - *Rd��O
T1z�Tx��d'`0W�O-��[�j0�zޞ0
        #��c�W0�
�TS�[�T^��W@bX�%R�v��GR0
      - �~b0RYP&{T�v��v�GRg*Rd�@b	g&{T�v��GR0

�{�O:

      �_@b	g-��[�j*Rd�
T�p "rule1" �v��GR:
      netsh advfirewall consec delete rule name="rule1"

      �_@b	g-��[�j*Rd�@b	g�RKa��GR:
      netsh advfirewall consec delete rule name=all type=dynamico�:yc�[�v#��}�[hQ'`��GR0
N
O(u�e_: show rule name=<string>
      [profile=public|private|domain|any[,...]]
      [type=dynamic|static (default=static)]
      [verbose]

�P;�:

      - �Ogqc�[�v
T1zbx��d'`�v-��[�j�S^��W
        �Oo�:y@b	g�O�0

�{�O:

      o�:y@b	g��GR:
      netsh advfirewall consec show name=all

      o�:y@b	g�RKa��GR:
      netsh advfirewall consec show rule name=all type=dynamic�e�X�e�v8�eQb8��Q2�kpFr��GR0
�

O(u�e_: add rule name=<string>
      dir=in|out
      action=allow|block|bypass
      [program=<program path>]
      [service=<service short name>|any]
      [description=<string>]
      [enable=yes|no (default=yes)]
      [profile=public|private|domain|any[,...]]
      [localip=any|<IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [remoteip=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [localport=0-65535|<port range>[,...]|RPC|RPC-EPMap|IPHTTPS|any (default=any)]
      [remoteport=0-65535|<port range>[,...]|any (default=any)]
      [protocol=0-255|icmpv4|icmpv6|icmpv4:type,code|icmpv6:type,code|
         tcp|udp|any (default=any)]
      [interfacetype=wireless|lan|ras|any]
      [rmtcomputergrp=<SDDL string>]
      [rmtusrgrp=<SDDL string>]
      [edge=yes|deferapp|deferuser|no (default=no)]
      [security=authenticate|authenc|authdynenc|authnoencap|notrequired
         (default=notrequired)]


�P;�:

      - \�e�v8�eQ��GRb8��Q��GR�e�X�2�kpFr�SGR0
      - ��GR
T1z�_�/f/UN�v��N
N�S�N/f "all"0
      - �Y�gc�[�N`��z��f�bO(u��D}�security �_�/f authenticate0
        authenc0authdynenc b authnoencap0
      - \�[hQ'`-��[�p authdynenc �S���|q}�p&{Tc�[ Windows Defender 2�kpFr��GR�vAm
        ϑ�RKa�N�m�R�[�vO(u0�R�[/f9h�d�s	g�v#��}�[hQ'`��GRgQ�[�O�N�m0�P
        x��AQ1���f��� Y�c�S8�eQ IPsec #��}�v,{NP TCP b UDP \S��S���[
        /f�[hQ�v�FO
NgO(u IPsec �O�R�[0N�eU�t,{NP\S�:O
ghV\g͑
        �e�N�m#��}&NGS}�[��#jMb���[hQ0W�R�[@b	g�_�~�v�
�0
      - �Y�g action=bypass�vu dir=in Bf�_�c�[`��z��f��D}0
      - �Y�g service=any�dk��GR�Pi�(u�e
g�R0
      - ICMP ^��Wb�N�x�S�N/f "any"0
      - �S	g8�eQ��GRMb�S�Nc�[��Lu0
      - AuthEnc � authnoencap 
N��Nw�O(u0
      - �S	gvu dir=in Bf�Authdynenc Mb	gHe0
      - vu-��[ authnoencap Bf�security=authenticate x��g��bx��d'`�Sxe0

�{�O:

      �p browser.exe �e�X�l	g�X.~�[hQ'`�v8�eQ��GR:
      netsh advfirewall firewall add rule name="allow browser"
      dir=in program="c:\programfiles\browser\browser.exe"
      security=authnoencap action=allow

      �p#��c�W 80 �e�X8��Q��GR:
      netsh advfirewall firewall add rule name="allow80"
      protocol=TCP dir=out localport=80 action=block

      �p TCP #��c�W 80 Amϑ�e�X����[hQ'`��R�[�v8�eQ��GR:
      netsh advfirewall firewall add rule
      name="Require Encryption for Inbound TCP/80"
      protocol=TCP dir=in localport=80 security=authdynenc
      action=allow

      �p browser.exe �e�X8�eQ��GR&NN����[hQ'`
      netsh advfirewall firewall add rule name="allow browser"
      dir=in program="c:\program files\browser\browser.exe"
      security=authenticate action=allow

      �p1u SDDL W[2NX�%R�v acmedomain\scanners �D}�e�X�]W�I��v2�
      kpFreuN���GR:
      netsh advfirewall firewall add rule name="allow scanners"
      dir=in rmtcomputergrp=<SDDL string> action=bypass
      security=authenticate

      �p,g_j#��c�W 5000-5010 �e�X8��QAQ1���GR�N(u�e udp-
      Add rule name="Allow port range" dir=out protocol=udp localport=5000-
      5010 action=allow
-��[�s	g��GRgQ�[�v�e<P0


O(u�e_: set rule
      group=<string> | name=<string>
      [dir=in|out]
      [profile=public|private|domain|any[,...]]
      [program=<program path>]
      [service=service short name|any]
      [localip=any|<IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [remoteip=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [localport=0-65535|<port range>[,...]|RPC|RPC-EPMap|IPHTTPS|any]
      [remoteport=0-65535|<port range>[,...]|any]
      [protocol=0-255|icmpv4|icmpv6|icmpv4:type,code|icmpv6:type,code|
         tcp|udp|any]
      new
      [name=<string>]
      [dir=in|out]
      [program=<program path>
      [service=<service short name>|any]
      [action=allow|block|bypass]
      [description=<string>]
      [enable=yes|no]
      [profile=public|private|domain|any[,...]]
      [localip=any|<IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [remoteip=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [localport=0-65535|RPC|RPC-EPMap|any[,...]]
      [remoteport=0-65535|any[,...]]
      [protocol=0-255|icmpv4|icmpv6|icmpv4:type,code|icmpv6:type,code|
         tcp|udp|any]
      [interfacetype=wireless|lan|ras|any]
      [rmtcomputergrp=<SDDL string>]
      [rmtusrgrp=<SDDL string>]
      [edge=yes|deferapp|deferuser|no (default=no)]
      [security=authenticate|authenc|authdynenc|notrequired]

�P;�:

      - (WX�%R�v��GR
N-��[�e�v�Sxe<P0傏�GR
NX[(W�dk}T�Ng1YWe0傁��^�z��
        GR�ˊO(u add }T�N0
      - new ܕu�W[�_b��v<Pg(W��GR-N�f�e0傒l	g<P�b:\ܕu�W[ new�GR
Ng
        |vu�NUO���f0
      - ��GR�D}�S��_U(ub\P(u0
      - �Y�g	gYP��GR&{T�h�N�GRg�f�e@b	g&{T�v��GR0
      - ��GR
T1z�_�/f/UN�v�N
N��/f "all"0
      - �c�[`��z��f�bO(u��D}�GR security �_�/f authenticate0authenc
        b authdynenc0
      - \�[hQ'`-��[�p authdynenc �S���|q}�p&{Tc�[ Windows Defender 2�kpFr��GR�vAm
        ϑ�RKa�N�m�R�[�vO(u0�R�[/f9h�d�s	g�v#��}�[hQ'`��GRgQ�[�O�N�m0�P
        x��AQ1���f��� Y�c�S8�eQ IPsec #��}�v,{NP TCP b UDP \S��S���[
        /f�[hQ�v�FO
N/fO(u IPsec �O�R�[0N�eU�t,{NP\S�:O
ghV\g͑
        �e�N�m#��}&NGS}�[��#jMb���[hQ0W�R�[@b	g�_�~�v�
�0
      - �S	gvu dir=in Bf�Authdynenc Mb	gHe0
      - � action=bypass�vu dir=in Bf�_�c�[`��z��f��D}0
      - � service=any�GR��GR�Si�(u�e
g�R0
      - ICMP ^��Wb�N�x�S�N/f "any"0
      - �S	g8�eQ��GRMb�S�Nc�[��Lu0

�{�O:

      (W
T�p "allow80" �v��GR
N���f`��z IP MO@W:
      netsh advfirewall firewall set rule name="allow80" new
      remoteip=192.168.0.2

      O(u�D}W[2N "Remote Desktop" _U(u�D}:
      netsh advfirewall firewall set rule group="remote desktop" new
      enable=yes

      ���f��GR "Allow port range" 
N�v,g_j#��c�W�N(u�e udp-
      Set rule name="Allow port range" dir=out protocol=udp localport=5000-
      5020 action=allow*Rd�@b	g&{T�v2�kpFr��GR0
�
O(u�e_: delete rule name=<string>
      [dir=in|out]
      [profile=public|private|domain|any[,...]]
      [program=<program path>]
      [service=<service short name>|any]
      [localip=any|<IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [remoteip=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [localport=0-65535|<port range>[,...]|RPC|RPC-EPMap|any]
      [remoteport=0-65535|<port range>[,...]|any]
      [protocol=0-255|icmpv4|icmpv6|icmpv4:type,code|icmpv6:type,code|
         tcp|udp|any]

�P;�:

      - *Rd�1u
T1zbx��d'`0W1u�zޞ0#��c�W0�
�TS�[�N�S^��W�O
        X�%R�v��GR0
      - �~b0RYP&{T�v��v�GRg*Rd�@b	g&{T�v��GR0
      - �c�[ name=all�GRg�_c�[�v^��W�-��[�j*Rd�@b	g��GR0

�{�O:

      *Rd�,g_j#��c�W 80 �v@b	g��GR:
      netsh advfirewall firewall delete rule name=all protocol=tcp localport=
      80

      *Rd�
T�p "allow80" �v��GR:
      netsh advfirewall firewall delete rule name="allow80"o�:yc�[�v2�kpFr��GR0
�
O(u�e_: show rule name=<string>
      [profile=public|private|domain|any[,...]]
      [type=static|dynamic]
      [verbose]

�P;�:

      - �Ogqc�[�v
T1zbx��d'`�v-��[�j�^��W�Oo�:y@b	g&{T�v��GR0
        �c�[ verbose�GRgo�:y@b	g&{T�v��GR0

�{�O:

      o�:y@b	g�RKa8�eQ��GR:
      netsh advfirewall firewall show rule name=all dir=in type=dynamic

      o�:y
T�p "allow browser" KN@b	g8�eQ��GR�v@b	g-��[:
      netsh advfirewall firewall show rule name="allow browser" verbosePA*Rd�@b	g&{T�v�[hQ'`ܕo�0
M
O(u�e_: delete mmsa|qmsa [(source destination)|all]

�P;�:
      - dk}T�Ng*Rd�&{Tc�[KNb
\ (source destination) �v@b	g�[hQ'`ܕo�0
      - Source � destination T�p�UN�v IPv4 b IPv6 MO@W0

�{�O:

      *Rd�@b	g�_�!j_�[hQ'`ܕo�:
      netsh advfirewall monitor delete qmsa all

      *Rd�iQPc�[KNMO@WKN���v@b	g;N��!j_�[hQ'`ܕo�:
      netsh advfirewall monitor delete mmsa 192.168.03 192.168.0.6o�:y�WL����k2�kpFr�SGR-��[0
-��[lQ(u-��[�j�vgQ�[0
�
O(u�e_:  set publicprofile (parameter) (value)

Parameters:

      state             - -��[2�kpFr�rKa0
              O(u�e_: state on|off|notconfigured

      firewallpolicy    - -��[�-��v8�eQ�8��QL��p0
      O(u�e_: firewallpolicy (inbound behavior),(outbound behavior)
         Inbound behavior:
            blockinbound        - \��
N&{T�NUO8�eQ��GR�v8�eQ#��}0
            blockinboundalways  - sSO#��}&{T�gP��GR�_Ng\��@b	g8�eQ#��}0
            allowinbound        - AQ1�
N&{T�NUO��GR�v8�eQ#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0
         Outbound behavior:
            allowoutbound       - AQ1�
N&{T�NUO��GR�v8��Q#��}0
            blockoutbound       - \��
N&{T�NUO��GR�v8��Q#��}0
            notconfigured       - \<P���S�p*g-��[�v�rKa0

      settings          - -��[2�kpFr-��[0
      O(u�e_: settings (parameter) enable|disable|notconfigured
      Parameters:
         localfirewallrules         - TuO,g_j2�kpFr��GR��D}�SGR��GR0-��[
                                      �D}�SGRX[>e@SBf	gHe0
         localconsecrules           - TuO,g_j#��}�[hQ'`��GR��D}�SGR��GR0
                                      -��[�D}�SGRX[>e@SBf	gHe0
         inboundusernotification    - vuz_�c}�8�eQ#��}Bf��wO(u�0
         remotemanagement           - AQ1��_`��z�{t Windows 2�kpFr0
         unicastresponsetomulticast - �c6RYޞ�P�KN�S-��[�rKa�v�Uޞ�P�d�V�a0

      logging           - -��[��-��[0
      O(u�e_: logging (parameter) (value)
      Parameters:
         allowedconnections  - ��AQ1��v#��}0
                               Values: enable|disable|notconfigured
         droppedconnections  - ��>e�h�v#��}0
                               Values: enable|disable|notconfigured
         filename            - 2�kpFr���j�v
T1z�MOn0
                               Values: <string>|notconfigured
         maxfilesize         - ���j'Y\
NP� (�UMO: KB)0
                               Values: 1 - 32767|notconfigured

�P;�:

      - -��[lQ(u-��[�j-��[0
      - "notconfigured" <P�P
\�e�D}�SGRX[>e@S	gHe0

�{�O:

      lQ(u-��[�j�p\O(u-N�rKaBfܕ��2�kpFr:
      netsh advfirewall set publicprofile state off

      lQ(u-��[�j�p\O(u-N�rKaBf�-��[�-�L��p�N\��8�eQ#��}�&NAQ1�8��Q#��}:
      netsh advfirewall set publicprofile firewallpolicy
      blockinbound,allowoutbound

      lQ(u-��[�j�p\O(u-N�rKaBf���_U`��z�{t:
      netsh advfirewall set publicprofile settings remotemanagement enable

      lQ(u-��[�j�p\O(u-N�rKaBf���>e�h�v#��}:
      netsh advfirewall set publicprofile logging droppedconnections enable
o�:ylQ(u-��[�j�vgQ�[0
r
O(u�e_: show publicprofile [parameter]

�Sxe:

      state             - o�:y0wQ	g2����[hQ'`�v Windows Defender 2�kpFr
0�v��_U
                          bܕ���rKa0
      firewallpolicy    - o�:y�-�8�eQ�8��Q2�kpFrL��p0
      settings          - o�:y2�kpFrgQ�[0
      logging           - o�:y��-��[0

�P;�:

      - o�:ylQ(u-��[�j�vgQ�[0�*gc�[�NUO�Sxe�GRgo�:y@b	ggQ�[0

�{�O:

      o�:ylQ(u-��[�j�v2�kpFr�rKa:
      netsh advfirewall show publicprofile state�
O(u�e_: add rule name=<string>
      endpoint1=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>
      endpoint2=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>
      action=requireinrequestout|requestinrequestout|
         requireinrequireout|requireinclearout|noauthentication
      [description=<string>]
      [mode=transport|tunnel (default=transport)]
      [enable=yes|no (default=yes)]
      [profile=public|private|domain|any[,...] (default=any)]
      [type=dynamic|static (default=static)]
      [localtunnelendpoint=any|<IPv4 address>|<IPv6 address>]
      [remotetunnelendpoint=any|<IPv4 address>|<IPv6 address>]
      [port1=0-65535|<port range>[,...]|any (default=any)]
      [port2=0-65535|<port range>[,...]|any (default=any)]
      [protocol=0-255|tcp|udp|icmpv4|icmpv6|any (default=any)]
      [interfacetype=wiresless|lan|ras|any (default=any)]
      [auth1=computerkerb|computercert|computercertecdsap256|
         computercertecdsap384|computerpsk|computerntlm|anonymous[,...]]
      [auth1psk=<string>]
      [auth1kerbproxyfqdn=<fully-qualified dns name>]
      [auth1ca="<CA Name> [certmapping:yes|no] [excludecaname:yes|no] 
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         |..."]
      [auth1healthcert=yes|no (default=no)]
      [auth1ecdsap256ca="<CA Name> [certmapping:yes|no]
         [excludecaname:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [auth1ecdsap256healthcert=yes|no (default=no)]
      [auth1ecdsap384ca="<CA Name> [certmapping:yes|no]
         [excludecaname:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [auth1ecdsap384healthcert=yes|no (default=no)]
      [auth2=computercert|computercertecdsap256|computercertecdsap384|
         userkerb|usercert|usercertecdsap256|usercertecdsap384|userntlm|
         anonymous[,...]]
      [auth2kerbproxyfqdn=<fully-qualified dns name>]
      [auth2ca="<CA Name> [certmapping:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]�

�P;�:

      - ��GR
T1z�_�/f/UN�v��N
N�S�N/f "all"0
      - vu mode=tunnel Bf��_�c�[�S��zޞ�
        FO�R\O/f noauthentication Bfd�Y0
        8�eQyr�[�v IP MO@WBf��[P�_�/f�vT�v IP Hr,g0
        dkY�(W-��[�RKa�S�Bf:
        �S�N\�S��zޞ-��[b any0(u6b�z�SGR
N�_c�[,g_j�S��zޞ (�Y any)0
        ��S��SGR
N���c�[`��z��zޞ0
        dkY��R\O�_�/f requireinrequireout0requireinclearout b
        noauthentication0
      - mode=Transport Bf�requireinclearout !qHe0
      - �\�_�c�[N.zW�I�0
      - Auth1 � auth2 �S�N/f�_�R���vx��n�U0
      - auth1 
N��TBfc�[ Computerpsk � computerntlm �e�l0
      - auth2 
N��TBfc�[O(u���I�� Computercert0
      - �S	g(W Windows Vista SP1 ��f�e�vHr,g-NMb/e�c Certsigning x��
        ecdsap256 � ecdsap3840
      - Qmsecmethods �S�N/f�N "," R���v�cp�n�U0
      - 
\�e qmsecmethods��[te'`=md5|sha1|sha256|aesgmac128|aesgmac192|
        aesgmac256|aesgcm128|aesgcm192|aesgcm256 N
        �R�[=3des|des|aes128|aes192|aes256|aesgcm128|aesgcm192|aesgcm2560
      - �Y�gc�[ aesgcm1280aesgcm192 b aesgcm256��_�\�[TBf(u�e ESP �[
        te'`��R�[0
      - �P Windows Vista SP1 ��f�e�vHr,g/e�c Aesgmac1280aesgmac1920
        aesgmac2560aesgcm1280aesgcm1920aesgcm2560sha2560
      - Qmpfs=mainmode �p PFS O(u;N��!j_ёp��N�c-��[0
      - 
N�^p�O(u DES0MD5 �T DHGroup10�c�O��N�R�[�}o�o�{�l�P�O�V�n�v�['`
        KN(u0
      - certmapping � excludecaname �v�-�<P/f 'no'0
      - CA 
T1z-N�v " W[CQ�_��S�N�p \'
      - 
\�e auth1ca � auth2ca��_�(W CA 
T1zMRb��R
N 'CN='0
      - catype �S(u�Oc�[�aI��c
k�UMO^��W - catype=root/intermediate
      - Windows 7 ��f�e�vHr,g/e�c authnoencap0
      - authnoencap h�:y��f�\�SO(uW�I��N\
NgO(u�NUO\S�X.~
        b�R�[o�{�l�O�Ow�dk#��}N�z-N�N�c�v�_�~�}�\S0
      - QMPFS � authnoencap !q�lTBf(u�e�vT�v��GR0
      - AuthNoEncap �_��\4O��NP AH b ESP �[te'`WY�N0
      - applyauthz �S��ݑ
\�S�!j_��GRc�[0
      - exemptipsecprotectedconnections �S��ݑ
\�S�!j_��GRc�[0�N�\dk�e
        j-��[�p "Yes"��S�_�S�A�MQ ESP Amϑ0\
Ng�_�S�A�MQ�P AH �vAmϑ0
      - qmsecmethod �v Valuemin (	gc�[Bf) �ar��N�e 5-2880 R�KN��0
        qmsecmethod �v Valuekb (	gc�[Bf) �ar��N�e 20480-2147483647 KB KN��0
      - Certhash �Sc�[c}b�aI��vܖJn0
      - Followrenewal �Sc�[/f&T����R�O�_�aI�-N�v�f�e#�P}0�Pi�(u�e�aI�@S�k
        (��� certhash)0
      - Certeku �Sc�[��(W�aI�-N�k
\�v�_�R�� EKU OID n�U0
      - Certname �Sc�[���k
\�v�aI�
T1zW[2N (��� certnametype)0
      - Certnametype �Sc�[���k
\KN certname �v�aI�kMO (��� certname)0J

�{�O:

      O(u�-�<P�O�p�}�W��▰e�X��GR:
      netsh advfirewall consec add rule name="isolation"
      endpoint1=any endpoint2=any action=requireinrequestout

      O(u���_�!j_�cp��O�e�X��GR:
      netsh advfirewall consec add rule name="custom"
      endpoint1=any endpoint2=any
      qmsecmethods=ah:sha1+esp:sha1-aes256+60min+20480kb,ah:sha1
      action=requireinrequestout

      O(u���_�!j_�cp��O�e�X��GR:
      netsh advfirewall consec add rule name="custom"
      endpoint1=any endpoint2=any
      qmsecmethods=authnoencap:sha1,ah:aesgmac256+esp:aesgmac256-none
      action=requireinrequestout

      �^�z subnet A (192.168.0.0, external ip=1.1.1.1) 0R
      subnet B (192.157.0.0, external ip=2.2.2.2) �v�S�!j_��GR:
      netsh advfirewall consec add rule name="my tunnel" mode=tunnel
      endpoint1=192.168.0.0/16 endpoint2=192.157.0.0/16
      remotetunnelendpoint=2.2.2.2
      localtunnelendpoint=1.1.1.1 action=requireinrequireout

      �^�zP[�}� A (192.168.0.0/16) 0R
      P[�}� B (192.157.0.0, remoteGW=2.2.2.2) (u6b�z�SGR�v�RKa�S�!j_��GR:
      netsh advfirewall consec add rule name="dynamic tunnel"
      mode=tunnel
      endpoint1=any endpoint2=192.157.0.0/16
      remotetunnelendpoint=2.2.2.2
      action=requireinrequireout
      Gateway Policy (Applied only to the Gateway device):
      netsh advfirewall consec add rule name="dynamic tunnel"
      mode=tunnel endpoint1=192.157.0.0/16
      endpoint2=any localtunnelendpoint=2.2.2.2
      action=requireinrequireout

      O(u CA 
T1z�e�X��GR:
      netsh advfirewall consec add rule name="cert rule"
      endpoint1=any endpoint2=any action=requireinrequestout
      auth1=computercert auth1ca="C=US, O=MSFT, CN=\'Microsoft North,
       South, East, and West Root Authority\'"

      O(uT.z�aI��h�N�e�XwQ	gYPW�I�!j_�v��GR:
      netsh advfirewall consec add rule name="cert rule" endpoint1=any
      endpoint2=any action=requireinrequireout auth1=computercert
      auth1ca="CN=\'CN1\' certcriteriatype:Selection certname:MyGroup
      certnametype:SubjectOU certeku:1.2.3.4.5|CN=\'CN2\'
      certcriteriatype:Validation certeku:2.3.4.5.6,9.10.11.12|CN=\'CN3\'
      certhash:0123456789abcdef01234567890ABCDEF0123456"^
O(u�e_: set rule
      group=<string> | name=<string>
      [type=dynamic|static]
      [profile=public|private|domain|any[,...] (default=any)]
      [endpoint1=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [endpoint2=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [port1=0-65535|<port range>[,...]|any]
      [port2=0-65535|<port range>[,...]|any]
      [protocol=0-255|tcp|udp|icmpv4|icmpv6|any]
      new
      [name=<string>]
      [profile=public|private|domain|any[,...]]
      [description=<string>]
      [mode=transport|tunnel]
      [endpoint1=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [endpoint2=any|localsubnet|dns|dhcp|wins|defaultgateway|
         <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [action=requireinrequestout|requestinrequestout|
         requireinrequireout|requireinclearout|noauthentication]
      [enable=yes|no]
      [type=dynamic|static]
      [localtunnelendpoint=any|<IPv4 address>|<IPv6 address>]
      [remotetunnelendpoint=any|<IPv4 address>|<IPv6 address>]
      [port1=0-65535|<port range>[,...]|any]
      [port2=0-65535|<port range>[,...]|any]
      [protocol=0-255|tcp|udp|icmpv4|icmpv6|any]
      [interfacetype=wiresless|lan|ras|any]
      [auth1=computerkerb|computercert|computercertecdsap256|
         computercertecdsap384|computerpsk|computerntlm|anonymous[,...]]
      [auth1psk=<string>]
      [auth1kerbproxyfqdn=<fully-qualified dns name>]
      [auth1ca="<CA Name> [certmapping:yes|no] [excludecaname:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [auth1healthcert=yes|no]
      [auth1ecdsap256ca="<CA Name> [certmapping:yes|no]
         [excludecaname:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [auth1ecdsap256healthcert=yes|no (default=no)]
      [auth1ecdsap384ca="<CA Name> [certmapping:yes|no]
         [excludecaname:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]

�P;�:

      - (W�]X�%R�v��GR
N-��[�e�Sxe<P0�Y�g��GR
NX[(W�}T�Ng1YWe0傁��^�z
        ��GR�ˊO(u add }T�N0
      - (W��GR-Ng�f�e new ܕu�W[�_b��v<P0�Y�g�l	g<Pb/fܕu�W[ new z�1Y�
        GR
Ng2�L����f0
      - ��GR�D}�S��_U(ub\P(u0
      - �Y�g	gYP��GR&{T�h�N�\g�f�e@b	g&{T�v��GR0
      - ��GR
T1z�_�/f/UN�v��N
N�S�N/f "all"0
      - Auth1 � auth2 �S�N/f�_�R���vx��n�U0
      - auth1 
N��TBfc�[ Computerpsk � computerntlm �e�l0
      - auth2 
N��TBfc�[O(u���I�� Computercert0
      - �S	g(W Windows Vista SP1 ��f�e�vHr,g
NMb/e�c Certsigning x��
        ecdsap256 � ecdsap3840
      - Qmsecmethods �S�N/f�N "," R���v�cp�n�U0
      - 
\�e qmsecmethods��[te'`=md5|sha1|sha256|aesgmac128|aesgmac192|
        aesgmac256|aesgcm128|aesgcm192|aesgcm256 N
        �R�[=3des|des|aes128|aes192|aes256|aesgcm128|aesgcm192|aesgcm2560
      - �Y�gc�[ aesgcm1280aesgcm192 b aesgcm256��_�\�[TBf(u�e ESP �[
        te'`��R�[0
      - �P Windows Vista SP1 ��f�e�vHr,g/e�c Aesgmac1280aesgmac1920
        aesgmac2560aesgcm1280aesgcm1920aesgcm2560sha2560
      - �Y�g\ qmsemethods -��p�-�<P�_Ng\ qmpfs -��p�-�<P0
      - Qmpfs=mainmode �p PFS O(u;N��!j_ёp��N�c-��[0
      - 
N�^p�O(u DES0MD5 �T DHGroup10�c�O��N�R�[�}o�o�{�l�P�O�V�n�v�['`
        KN(u0
      - CA 
T1z-N�v " W[CQ�_��S�N�p \'
      - 
\�e auth1ca � auth2ca��_�(W CA 
T1zMRb��R
N 'CN='0
      - catype �S(u�Oc�[�aI��c
k�UMO^��W - catype=root/intermediate
      - Windows 7 ��f�e�vHr,g/e�c authnoencap0
      - authnoencap h�:y��f�\�SO(uW�I��N\
NgO(u�NUO\S�X.~b�R�[o�{
        �l�O�Ow�dk#��}N�z-N�v�_�~�}�\S0
      - QMPFS � authnoencap !q�lTBf(u�e�vT�v��GR0
      - AuthNoEncap �_��\4O��NP AH b ESP �[te'`WY�N0
      - vu mode=tunnel Bf��R\O�_�/f requireinrequireout0requireinclearout
        b noauthentication0
      - vu mode=Transport Bf�requireinclearout !qHe0
      - applyauthz �S��ݑ
\�S�!j_��GRc�[0
      - exemptipsecprotectedconnections �S��ݑ
\�S�!j_��GRc�[0�N�\dk�e
        j-��[�p "Yes"��S�_�S�A�MQ ESP Amϑ0\
Ng�_�S�A�MQ�P AH �vAmϑ0
      - vu mode=transport Bf�Mb��c�[ Port10Port2 � Protocol0
      - qmsecmethod �v Valuemin (	gc�[Bf) �ar��N�e 5-2880 R�KN��0
        qmsecmethod �v Valuekb (	gc�[Bf) �ar��N�e 20480-2147483647 KB KN��0
      - Certhash c�[c}b�aI��vܖJn0
      - Followrenewal c�[/f&T����R�O�_�aI�-N�v�f�e#�P}0�Pi�(u�e�aI�@S�k
        (��� certhash)0
      - Certeku c�[��(W�aI�-N�k
\�v�_�R�� EKU OID n�U0
      - Certname c�[���k
\�v�aI�
T1zW[2N (��� certnametype)0
      - Certnametype c�[���k
\KN certname �v�aI�kMO (��� certname)0�

�{�O:

      \ rule1 ͑�e}T
T�p rule 2:
      netsh advfirewall consec set rule name="rule1" new
      name="rule2"

      ���f��GR-N�v�R\O:
      netsh advfirewall consec set rule name="rule1"
      endpoint1=1.2.3.4 endpoint2=4.3.2.1 new action=requestinrequestout

      O(u���_�!j_�cp��e�X��GR:
      netsh advfirewall consec set rule name="Custom QM" new
      endpoint1=any endpoint2=any
      qmsecmethods=authnoencap:aesgmac256,ah:aesgmac256+esp:aesgmac256-none
o�:y;N��!j_ SA
9
O(u�e_: show mmsa [(source  destination)|all]

�P;�:

      - dk}T�Ngo�:y�[hQ'`ܕo��bo�:y�p�{x��O�d (source destination) D}0
      - source � destination T�p�UN�v IPv4 b IPv6 MO@W0

�{�O:

      o�:y@b	g�v;N��!j_ SA:
      netsh advfirewall monitor show mmsa

      o�:yiQPMO@WKN���v;N��!j_ SA:
      netsh advfirewall monitor show mmsa 192.168.0.3 192.168.0.4o�:y�_�!j_ SA0
8
O(u�e_: show qmsa [(source  destination)|all]

�P;�:

      - dk}T�Ngo�:y�[hQ'`ܕo��bo�:y�p�{x��O�d (source destination) D}0
      - Source � destination T�p�UN�v IPv4 b IPv6 MO@W0

�{�O:

      o�:y@b	g�_�!j_ SA:
      netsh advfirewall monitor show qmsa

      o�:yiQPMO@WKN���v�_�!j_ SA:
      netsh advfirewall monitor show qmsa 192.168.0.3 192.168.0.4�e�X�e�v;N��!j_��GR0
�p�s	g��GR�vgQ�[-��[�e<P0
*Rd�@b	g&{T�v;N!j_��GR0
t
O(u�e_: delete rule name=<string>|all
      [profile=any|current|public|private|domain[,...]]
      [type=dynamic|static (default=static)]

�P;�:

      - *Rd�&{Tc�[
T1z�v�s	g;N!j_-��[0�S�Nx��d'`0Wc�[-��[�j0�Y�g
        +T	gc�[
T1z�v-��[
NX[(W�}T�Ng1YWe0
      - �Y�gc�[ name=all�g�_c�[�v^��W�T-��[�j*Rd�@b	g�v��GR0
        �Y�g*gc�[-��[�j�g\r�*Rd�WY(u�@b	g�v-��[�j0

�{�O:

      *Rd�+T	g
T1z,nf��v;N��!j_��GR:
      Netsh advfirewall mainmode delete rule name="test"
o�:yc�[�v;N��!j_��GR0
e
O(u�e_: show rule name=<string>|all
      [profile=all|current|public|private|domain[,...]]
      [type=dynamic|static (default=static)]
      [verbose]

�P;�:

      - o�:y&{Tc�[
T1z�v�s	g;N��!j_-��[0
        o�:y�O
T1zc�[�v@b	g&{T��GR�&N�Sx��d'`0Wc�[-��[�j0
        �Y�g(W
T1z-Nc�[ "all"�\gݑ
\c�[�v-��[�jo�:y@b	g�v;N��!j_
        -��[0

�{�O:

      �O
T1z,nf�o�:y;N��!j_��GR:
      Netsh advfirewall mainmode show rule name="test"o�:y�vMR�v2�kpFr�rKanj
�0

O(u�e_: show firewall 
       [rule
           name=<string>
           [dir=in|out]
           [profile=public|private|domain|active|any[,...]]
       ]
       [verbose] 


�P;�:

      - o�:y@b	g�S(u�}�-��[�j�v Windows Defender 2�kpFrgQ�[0
      - profile= argument AQ1��|q}�{t�T(W�|q}
N�{x�yr�[-��[�j�v8��Q0
      - Verbose _xe�e�X
\�eo�:ys�0}�v�[hQ'`�2�����GR 'source name' nj
        
��v/e�c0

�{�O:

      o�:y�vMR�v2�kpFr�rKa:
      netsh advfirewall monitor show firewall

      o�:ylQ(u-��[�j�vMR�v8��Q2�kpFr��GR:
      netsh advfirewall monitor show firewall rule name=all dir=out profile=publico�:y�vMR�v consec �rKanj
�0
)
O(u�e_: show consec 
       [rule
           name=<string>
           [profile=public|private|domain|active|any[,...]]
       ]
       [verbose]


�P;�:

      - o�:y@b	g�S(u�}�-��[�j�v#��}�[hQ'`-��[
      - [profile=] }T�NAQ1��|q}�{t�T(W�|q}
N\8��Q�{x��pyr�[�v-��[�j�
        b/f�S�_O(u-N-��[�jb^�O(u-N-��[�j�P�VP}�g
      - [rule] }T�NAQ1��|q}�{t�T\��GR8��Q�v�{
W�p-��[�p�g�N��GR
T1z
        ��rKa��NP�6R8��Q�{
W
      - Verbose }T�N�e�X
\�eo�:ys�0}�v�[hQ'`�2�����GR 'source name' nj
        
��v/e�c0

�{�O:

      o�:y�vMR�v#��}�[hQ'`�rKa:
      netsh advfirewall monitor show consec

      o�:ylQ(u-��[�j�vMR�v#��}�[hQ'`nj
�:
      netsh advfirewall monitor show consec rule name=all profile=public
o�:y�vMR�vO(u-N-��[�j0
�
O(u�e_: show currentprofile

�P;�:

      - dk}T�No�:y��vMRO(u-N�v-��[�jܕo��v�}�#��}0

�{�O:

      o�:y��vMRO(u-N�v-��[�jܕo��v@b	g�}�:
      netsh advfirewall monitor show currentprofilePAo�:y�vMR�v;N��!j_�rKanj
�0
�
O(u�e_: show mainmode
          [rule
              name=<string>
              [profile=public|private|domain|active|any[,...]]
          ]
          [verbose]


�P;�:

      - o�:y@b	g�S(u�}�-��[�j�v;N��!j_�[hQ'`-��[
      - [profile=] }T�N�S���|q}�{t�T�{x�8��Q�|q}
N�vyr�[-��[�j�b
        �S�P�V\O(u-Nb^�\O(u-N-��[�j�vP}�g
      - [rule] }T�N�S���|q}�{t�T\��GR8��Q�{
WP�6R�pyr�[��GR
T1z��r
        Ka��NP�6R8��Q�{
W
      - Verbose }T�N�e�X
\�eo�:ys�0}�[hQ'`�2�����GR 'source name' nj
        
��v/e�c

�{�O:

      o�:ylQ(u-��[�j�v�vMR;N��!j_nj
�:
      netsh advfirewall monitor show mainmode rule name=all profile=public	
      [auth2ecdsap256ca="<CA Name> [certmapping:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [auth2ecdsap384ca="<CA Name> [certmapping:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [qmpfs=dhgroup1|dhgroup2|dhgroup14|dhgroup24|ecdhp256|ecdhp384|
         mainmode|none (default=none)]
      [qmsecmethods=authnoencap:<integrity>+[valuemin]+[valuekb]|
         ah:<integrity>+esp:<integrity>-<encryption>+[valuemin]+[valuekb]
         |default]
      [exemptipsecprotectedconnections=yes|no (default=no)]
      [applyauthz=yes|no (default=no)]�
      - Certcriteriatype c�[x��S,g_j�aI�0W�I�
\I{�aI�biQ�TBf2�L�Bf�
        /f&T��O(u�aI��c�S�R\O0
      - (W computercert W�I�
\�a-N��S�SgqYP�aI���e_/fO(u '|' W[CQ
        R���kP��v0�
      [auth1ecdsap384healthcert=yes|no (default=no)]
      [auth2=computercert|computercertecdsap256|computercertecdsap384|
         userkerb|usercert|usercertecdsap256|usercertecdsap384|userntlm|
         anonymous[,...]]
      [auth2kerbproxyfqdn=<fully-qualified dns name>]
      [auth2ca="<CA Name> [certmapping:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [auth2ecdsap256ca="<CA Name> [certmapping:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [auth2ecdsap384ca="<CA Name> [certmapping:yes|no]
         [catype:root|intermediate (default=root)]
         [certhash:<Hex hash string, with no spaces or leading 0x>]
         [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
         [certname:<CertName>] [certnametype:<SubjectAltDNS|
         SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
         [certcriteriatype:<Selection|Validation|Both (default=both)>]
         | ..."]
      [qmpfs=dhgroup1|dhgroup2|dhgroup14|dhgroup24|ecdhp256|ecdhp384|
         mainmode|none]
      [qmsecmethods=authnoencap:<integrity>+[valuemin]+[valuekb]|
         ah:<integrity>+esp:<integrity>-<encryption>+[valuemin]+[valuekb]
         |default]
      [exemptipsecprotectedconnections=yes|no (default=no)]
      [applyauthz=yes|no (default=no)]G
      - Certcriteriatype c�[x��S,g_j�aI�0W�I�
\I{�aI�biQ�TBf2�L�Bf�
        /f&T��O(u�aI��c�S�R\O0

�P;�:

      - �e�X mainmode ��GR0R2�kpFr�SGR0
      - ��GR
T1z�_�/f/UN�v��N
N�S�N/f "all"0
      - auth1 
N��TBfc�[ Computerpsk � computerntlm �e�l0
      - 
N�^p�O(u DES0MD5 �S DHGroup10
        ��N�[�x�}o�o�{�l/f�p�N�V�n�v�['`��c�O0
      - g\;N��!j_ keylifetime �p mmkeylifetime=1min0
        g'Y;N��!j_ mmkeylifetime= 2880min0
        g\�]\O���kxe = 0 P�]\O���k0
        g'Y = 2,147,483,647 P�]\O���k0
      - mmsecmethods ܕu�W[�-�<Pg\�SGR-��p:
        dhgroup2-aes128-sha1,dhgroup2-3des-sha1
      - Certhash c�[c}b�aI��vܖJn0
      - Followrenewal c�[/f&T����R�O�_�aI�-N�v�f�e#�P}0
        �Pi�(u�e�aI�@S�k (��� certhash)0
      - Certeku c�[��(W�aI�-N�k
\�v�_�R�� EKU OID n�U0
      - Certname c�[���k
\�v�aI�
T1zW[2N (��� certnametype)0
      - Certnametype c�[���k
\KN certname �v�aI�kMO (��� certname)0
      - Certcriteriatype c�[x��S,g_j�aI�0W�I�
\I{�aI�biQ�TBf2�L�Bf�
        /f&T��O(u�aI��c�S�R\O0

�{�O:

      -Add a main mode rule
       Netsh advfirewall mainmode add rule name="test"
       description="Mainmode for RATH"
       Mmsecmethods=dhgroup2:3des-sha256,ecdhp384:3des-sha384
       auth1=computercert,computercertecdsap256
       auth1ca="C=US, O=MSFT, CN=\'Microsoft North,
       South, East, and West Root Authority\'"
       auth1healthcert=no
       auth1ecdsap256ca="C=US, O=MSFT, CN=\'Microsoft North,
       South, East, and West Root Authority\'"
       auth1ecdsap256healthcert=yes
       mmkeylifetime=2min profile=domain�

�P;�:

      -(Wc�[�v��GR-��[�e�Sxe<P0�Y�g��GR
NX[(W�}T�Ng1YWe0�Y�g���^�z��GR�
       ˊO(u add }T�N0
      -�f�e��GR-N�v new ܕu�W[�_�v<P0�Y�g�l	g<Pbz�oܕu�W[ new�
       GR
Ng2�L����f0
      -�Y�g	gYP��GR&{T�nGR�\�f�e@b	g�v&{�v��GR0
      -��GR
T1z�_�/f/UN�v��N
N�S�N/f "all"0
      -Auth1 �S�N/f�_�R���vx��n�U0
       auth1 
N��TBfc�[ Computerpsk � computerntlm �e�l0
      -
N�^p�O(u DES0MD5 �S DHGroup10
       ��N�[�x�}o�o�{�l/f�p�N�V�n�v�['`��c�O0
      -g\;N��!j_ keylifetime �p mmkeylifetime=1min0
       g'Y;N��!j_ mmkeylifetime= 2880min0
       g\�]\O���kxe = 0 P�]\O���k0
       g'Y = 2,147,483,647 P�]\O���k0
      -mmsecmethods ܕu�W[�-�<Pg\�SGR-��p:
       dhgroup2-aes128-sha1,dhgroup2-3des-sha1
      -Certhash c�[c}b�aI��vܖJn0
      -Followrenewal c�[/f&T����R�O�_�aI�-N�v�f�e#�P}0�Pi�(u�e�aI�@S�k
       (��� certhash)0
      -Certeku c�[��(W�aI�-N�k
\�v�_�R�� EKU OID n�U0
      -Certname c�[���k
\�v�aI�
T1zW[2N (��� certnametype)0
      -Certnametype c�[���k
\KN certname �v�aI�kMO (��� certname)0
      -Certcriteriatype c�[x��S,g_j�aI�0W�I�
\I{�aI�biQ�TBf2�L�Bf�
       /f&T��O(u�aI��c�S�R\O0
�{�O:

      Change the mmescmethods, description
      and keylifetime of a rule named test

      Netsh advfirewall mainmode set rule name="test"
      new description="Mainmode for RATH2"
      Mmsecmethods=dhgroup2:3des-sha256,ecdhp384:3des-sha384
      auth1=computerntlm  mmkeylifetime=2min profile=domainZ	
O(u�e_: add rule name=<string>
      mmsecmethods=dhgroup1|dhgroup2|dhgroup14|dhgroup24|ecdhp256|
      ecdhp384:3des|des|aes128|aes192|aes256-md5|sha1|sha256
      |sha384[,...]|default
      [mmforcedh=yes|no (default=no)]
      [mmkeylifetime=<num>min,<num>sess]
      [description=<string>]
      [enable=yes|no (default=yes)]
      [profile=any|current|public|private|domain[,...]]
      [endpoint1=any|<IPv4 address>|<IPv6 address>|<subnet>
      |<range>|<list>]
      [endpoint2=any|localsubnet|dns|dhcp|wins|defaultgateway|
      <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [auth1=computerkerb|computercert|computercertecdsap256|
      computercertecdsap384|computerpsk|computerntlm|anonymous[,...]]
      [auth1psk=<string>]
      [auth1kerbproxyfqdn=<fully-qualified dns name>]
      [auth1ca="<CA Name> [certmapping:yes|no] [excludecaname:yes|no] 
      [catype:root|intermediate (default=root)]
      [certhash:<Hex hash string, with no spaces or leading 0x>]
      [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
      [certname:<CertName>] [certnametype:<SubjectAltDNS|
      SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
      [certcriteriatype:<Selection|Validation|Both (default=both)>]
      | ..."]
      [auth1healthcert=yes|no (default=no)]
      [auth1ecdsap256ca="<CA Name> [certmapping:yes|no]
      [excludecaname:yes|no] 
      [catype:root|intermediate (default=root)]
      [certhash:<Hex hash string, with no spaces or leading 0x>]
      [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
      [certname:<CertName>] [certnametype:<SubjectAltDNS|
      SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
      [certcriteriatype:<Selection|Validation|Both (default=both)>]
      | ..."]
      [auth1ecdsap256healthcert=yes|no (default=no)]
      [auth1ecdsap384ca="<CA Name> [certmapping:yes|no]
      [excludecaname:yes|no] 
      [catype:root|intermediate (default=root)]
      [certhash:<Hex hash string, with no spaces or leading 0x>]
      [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
      [certname:<CertName>] [certnametype:<SubjectAltDNS|
      SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
      [certcriteriatype:<Selection|Validation|Both (default=both)>]
      | ..."]
      [auth1ecdsap384healthcert=yes|no (default=no)]
      [type=dynamic|static (default=static)]�	
O(u�e_:
      set rule name=<String>
      [profile=public|private|domain|any[,...]]
      [type=dynamic|static (default=static)]
      new
      [name=<string>]
      [mmsecmethods= dhgroup1|dhgroup2|dhgroup14|dhgroup24|ecdhp256|
      ecdhp384:3des|des|aes128|aes192|aes256-md5|sha1|sha256|
      sha384[,...]|default]
      [mmforcedh=yes|no (default=no)]
      [mmkeylifetime=<num>min,<num>sess]
      [description=<string>]
      [enable=yes|no]
      [profile=public|private|domain|any[,...]]
      [endpoint1=any|localsubnet|dns|dhcp|wins|defaultgateway
      <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [endpoint2=any|localsubnet|dns|dhcp|wins|defaultgateway|
      <IPv4 address>|<IPv6 address>|<subnet>|<range>|<list>]
      [auth1=computerkerb|computercert|computercertecdsap256|
      computercertecdsap384|computerpsk|computerntlm|anonymous[,...]]
      [auth1psk=<string>]
      [auth1kerbproxyfqdn=<fully-qualified dns name>]
      [auth1ca="<CA Name> [certmapping:yes|no] [excludecaname:yes|no] 
      [catype:root|intermediate (default=root)]
      [certhash:<Hex hash string, with no spaces or leading 0x>]
      [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
      [certname:<CertName>] [certnametype:<SubjectAltDNS|
      SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
      [certcriteriatype:<Selection|Validation|Both (default=both)>]
      | ..."]
      [auth1healthcert=yes|no (default=no)]
      [auth1ecdsap256ca="<CA Name> [certmapping:yes|no]
      [excludecaname:yes|no] 
      [catype:root|intermediate (default=root)]
      [certhash:<Hex hash string, with no spaces or leading 0x>]
      [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
      [certname:<CertName>] [certnametype:<SubjectAltDNS|
      SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
      [certcriteriatype:<Selection|Validation|Both (default=both)>]
      | ..."]
      [auth1ecdsap256healthcert=yes|no (default=no)]
      [auth1ecdsap384ca="<CA Name> [certmapping:yes|no]
      [excludecaname:yes|no] 
      [catype:root|intermediate (default=root)]
      [certhash:<Hex hash string, with no spaces or leading 0x>]
      [followrenewal:yes|no (default=no)] [certeku:<EKU, EKU, ...>]
      [certname:<CertName>] [certnametype:<SubjectAltDNS|
      SubjectAltEmail|SubjectCN|SubjectOU|SubjectO|SubjectDC>]
      [certcriteriatype:<Selection|Validation|Both (default=both)>]
      | ..."]
      [auth1ecdsap384healthcert=yes|no (default=no)]
      [profile= any|current|domain|private|public[,...]]PA7
c�[`��z��f�Bf�X[>e@S
N��/f�D}�SGRir�N0ˊ\�`�vX[>e@S͑-��p 'Local'�b\r���f�͑-��p,g_j��f�0
+
|vu!q�l�O�_�v Windows Defender 2�kpFr/��� (0x%1!x!)0
#
Vf��b�S Windows Defender 2�kpFr-��[Bf|vu/���0
6
Vf�#�a} Windows Defender 2�kpFr
g�RBf|vu/���0ˊ�x�[
g�Rck(W�WL�&N�Q!kVf��`�v��Bl0

W[2N 'all' 
N��vu\O��GR�v
T1z0
)
|vu!q�l�O�_�v netsh advfirewall /��� (0x%1!x!)0

~b
N0R&{Tc�[�h�N�v��GR0

~b
N0Rc�[�v�R�[�}o�Ɩ0
t
-��[�D}�SGRir�N (GPO) X[>e@SBf�!q�lO(u 'CurrentProfile'0ˊO(u 'DomainProfile'0'PrivateProfile'0'PublicProfile' b 'AllProfiles' �f�N0

�P-��[�S��(W-��[�D}�SGRir�N (GPO) X[>e@SBf���f0

dk-��[�S��(W-��[,g_jX[>e@SBf���f0
!
�S	g�
�TS�[/f TCP b UDP �v�`�lN�Mb��c�[#��c�W0
!
-��[�D}�SGRir�N (GPO) X[>e@SBf�
N��O(u�RKa��GR^��W0

c�[ auth1 x��Bf���� auth1 �Sxe0

c�[ auth2 x��Bf���� auth2 �Sxe0

~b
N0Rc�[�vW�I�D}0

c�[�v auth1 D}z�1Y�_���v�Sxe0

c�[�v auth2 D}z�1Y�_���v�Sxe0
/
!q�l/S�Q�SGR�|vu/��� 0x%1!x!0ˊ�x�[�j
Tck�x��jHh�S�NX[�S02�kpFr�SGR&N*g͑-�0

-��[�D}�SGRir�N (GPO) X[>e@SBf�!q�lO(u�v��gQ�[0
+
c�[�v�zޞ*gO(u�vT�v IP Hr,g0ˊc�[iQP IPv4 biQP IPv6 �zޞ0

�l	g SA &{Tc�[�v�h�N0
(
!q�l/S�Q�SGR (|vu/��� 0x%1!x!)0ˊ�x�[�j
Tck�x&NN�jHh�S�NX[�S0
H
!q�l/SeQ�SGR (|vu/��� 0x%1!x!)0ˊ�x�[�j
Tck�x0�jHh�S�NX[�S��N�[/f	gHe�v Windows Defender 2�kpFr�SGR�jHh0
PAM
Vf�#��}�`��z��f�Bf|vu/���0ˊ�x�[`��z��f�
N�v Windows Defender 2�kpFr
g�Rck(W�WL��&N�]-��[�pAQ1�`��z�{t�6q�_�Q!kVf��`�v��Bl0
;
Vf�-��[c�[�v�D}�SGRir�N (GPO) X[>e@SBf|vu/���0ˊ�x�[ GPO /fck�xN�SX[�S�v�6q�_�Q!kVf��`�v��Bl0

Vf��WL�W�I�Bf�|vuaY�v/��� (0x%1!x!)0

�c�O�v_xexe�v
Nck�x0ˊ�j�g��f�N�S�_ck�x�v���l0

c�[�v IP MO@WbMO@Wܕu�W[
Nck�x0


c�[�v#��c�W<P
Nck�x0

c�[�v�
�TS�[<P
Nck�x0

c�[�v auth1 <P
Nck�x0

c�[�v auth2 <P
Nck�x0
+

\�e 'set' }T�N��_��c�Oܕu�W[ 'new'��N
N��/f�c�O�vg�_NP_xe0


c�[�v<P
Nck�x0

c�[�v_xe
Nck�x0͑-��v/UNck�x_xe/f 'export'0

c�[�vX[>e@S
Nck�x0

c�[�v2�kpFr�SGR-��[
Nck�x0

�_�/fxeW[xe<P08�eQ/f^�xe<Pb
Nck�x0

c�[�v mmkeylifetime <P
Nck�x0
PA
c�[�v strongcrlcheck <P
Nck�x0

c�[�v saidletimemin <P
Nck�x0
&
c�[�v statefulftp b statefulpptp <P
Nck�x0


c�[�v�[hQ'`<P
Nck�x0
%
c�[�O�nD}��v�vD}b/fܕu�W[ 'all'��NX�%R�[hQ'`ܕo� (SA)0

c�[�v mmsecmethods <P
Nck�x0

c�[�v qmsecmethods <P
Nck�x0

(W qmsecmethods -Nc�[�v�
�TS�[
Nck�x0

(W qmsecmethods -Nc�[�vёp�X[Yug<P
Nck�x0
7
�Y�g�p qmsecmethods -N�v�cp�c�[�v,{NP�
�TS�[/f ESP�GR(Wr��cp�-N
NAQ1�vQ�N�
�TS�[0
>
vu(W qmsecmethods �cp�-NTBfO(u AH � ESP �
�TS�[Bf��_��p�iQP�
�TS�[O(u�vT�v�[te'`xe<P0
#
�p qmsecmethods �cp�c�[��N�N!k�N
N�v�vT�
�TS�[0
9
�V�pc�[�v�D}�SGRir�N (GPO) X[>e@S
NX[(W�@b�N!q�l��_U0ˊ�^�z GPO X[>e@S�6q�_�Q!kVf��`�v��Bl0
&
vu Auth1 S+T ComputerPSK Bf�
N��c�[ Auth20

c�[�v�D}�SGRir�N (GPO) X�%R�x
Nck�x0
9
!q�l��_U(Wc�[��f�
N�v�D}�SGRir�N (GPO)0ˊ�x�[c�[�v GPO 	gHe&NN�S�NX[�S�6q�_�Q!kVf��`�v��Bl0
%
!q�l#�a}c�[�v�}�W0ˊ�x�[�}�W	gHe&NN�S�NX[�S�6q�_�Q!kVf��`�v��Bl0
2
!q�l��_Uc�[�v�D}�SGRir�N (GPO)0ˊ�x�[ GPO 	gHe&NN�S�NX[�S�6q�_�Q!kVf��`�v��Bl0
.
~b0RYPwQ	gc�[
T1z�v�D}�SGRir�N (GPO)0ˊc�[�`��-��[KN GPO �v GUID0
>
vu��GR!j_/f�S�Bf��_�TBfc�[ Localtunnelendpoint � remotetunnelendpoint0
<
vu��GR!j_/f�P8�Bf�!q�lc�[ Localtunnelendpoint � remotetunnelendpoint0
.
c�[ Auth2HealthCert Bf�Auth2 �_�/f ComputerCert0


c�[�v�Nb�^��W
Nck�x0
*
!q�l-��[���j_ (|vu/��� 0x%1!x!)0!q�l(W�jHh_-��[�[hQ'`l\'`0

���j'Y\�_�(W 1 0R 32767 KN��0
7
(W0N,��h�N
0!j_N�vu-��[ qmsecmethods=None Bf��|q}�{t�T!q�l\��GR-��[�pvQ�N�h�N0
B
vu�R\O-��[�p noauthentication Bf�!q�lc�[ auth10auth20qmpfs � qmsecmethods0
+
(W�vT�v��GR-N
N��TBfc�[ Computerntlm � computerpsk0
&
NbYPc�[�v-��[�j
Nck�x0�Y�gc�[vQ�N-��[�j�GR
N��c�[ 'Any'0

�D}
N�S�vQ�NX�%R�r�lTBfc�[0

�S	g_U(u�SxeMb��(u�N�f�e�D}c�[�v��GR0
$
vu qmsecmethods -��[�p�-�<PBf�!q�lc�[ Qmpfs0
*
Notconfigured <P�S��(W-��[�D}�SGRir�N (GPO) X[>e@SBfO(u0

!q�lc�[?S
TZP�p auth2 -N�v/UN�cp�0

c�[ auth2 Bf��� Auth10
(
'None' 
N��� defaultexemptions �vvQ�N<PNw�c�[0
*
vu Auth2 �]c�[Bf�!q�l�f�e Auth1 �NS+T computerpsk0

Auth1 !q�lS+TN!k�N
N�v�vTW�I��e�l0

Auth2 !q�lS+TN!k�N
N�v�vTW�I��e�l0

c�[�vx��
Nck�x: %1!ls!0
%
d��N AuthNoEncap x��KNY��`�_��\c�[NP�[te'`WY�N0
:
�Y�g AuthNoEncap c�[�p qmsecmethods -N�cp��v�
�TS�[�GRr��cp�-N
NAQ1�vQ�N�
�TS�[0
P
�D}�SGR�{t�]wQ!q�lO(u0ˊ�_ https://go.microsoft.com/fwlink/?LinkID=126644 N	��]wQ�6q�_͑�e�WL�r�}T�N0
(
*g_U(u�D}�SGR�{t�R��0ˊ�N�:O
ghV�{t�T_U(u�D}�SGR�{t�&N�Q!k�WL�}T�N0
F
�S	g(W�
�TS�[/f TCP b UDP BfMb��c�[#��c�W0�S	gvu action="noauthentication" BfMb/e�c#��c�W�{
W0

SDDL W[2N!qHe0
)
�O�d��GR�
N��(W�S���GR-Nc�[ machineSDDL � userSDDL0
�4VS_VERSION_INFO��
aJ
aJ?StringFileInfo�040404B0LCompanyNameMicrosoft Corporationp$FileDescriptionwQ	g2����[hQ'`-��[TS�Rz_�v Windows Defender 2�kpFrh$FileVersion10.0.19041.1 (WinBuild.160101.0800)<InternalNameauthfwcfg.dll�.LegalCopyright� Microsoft Corporation. All rights reserved.LOriginalFilenameauthfwcfg.dll.muij%ProductNameMicrosoft� Windows� Operating System>
ProductVersion10.0.19041.1DVarFileInfo$Translation�PADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDINGPADDINGXXPADDING