Forum Discussion

DanWheeler's avatar
DanWheeler
Copper Contributor
Apr 28, 2022

Intune Firewall Policies Left Behind - Creation but No Deletion

I've been building out firewall policies for our device types and through some accidental experimentation, found that firewall policies never seem to be removed from the firewall once the Intune config is unassigned or changed. I have a couple examples of this:

 

In case #1, I created a firewall rule in Intune and first limited it to domain and private network profiles. This created a firewall rule as expected with "Domain, Private" shown in the profile column for the rule. I then found that this firewall rule was not working (unrelated problem) so I removed the Domain and Private checkboxes to make the rule apply to all network profiles. It's easier that way anyway since Windows sometimes gets confused about what type of network it's on (another unrelated but common issue) But now I have both sets of rules from the original and modified Intune policy:

 

 

In case #2, I had two firewall rule sets applied from Intune with identical RDP rules. I fixed the issue by unassigning the redundant Intune rule but the rule remained in the firewall config.

 

I'm just now discovering this so I could be missing something or not understanding how these firewall rules work but was wondering if anyone else could repro or has run into this?

 

thanks,

Dan

 

 

 

 

 

 

8 Replies

Resources