Is there a way to enable XP firewall on our workstations via group policy
but provide a full exception for all of our servers on the domain using IP
address or DNS names. From what I have seen it is really on a port per port
basis or predifined rules such as Remote access or file and print. This is
simply to cumbersom to manage

Steven L Umbach

I don't believe that there is a way to "allow all" from a particular IP
address and you will need to resort to methods you mention. In most
situations you would not need to open that many ports with allowing remote
administration and/or Remote Desktop sufficing. I hope they fix that in
Vista and also add the capability to add address ranges. --- Steve

