Good day
In an attempt to mitigate the Emotet trojan I created a Group Policy to block SMB traffic Port 445. The policy was created to block Local 445 traffic. But there is a requirement to allow our Administrators to map to the C:$ share.
I have tried the following:
- Inbound Firewall rule created to Block Port 445.
- Cange the GPO to allow Remote Authorized users, the policy requests me to "Allow only Secure Connections".
- Cutomizing the rule doesnt seem to produce the desired result.
- I cant seem to get this to work successfully. Anyone have a similar requirement that can point me in the right direction?
Regards
VB Knowledge = 0%