Previous Topic: Windows XP and 2003Next Topic: Support Tools


Firewall Configuration on Windows XP SP2 and 2003 SP1

For Windows XP SP2 and Windows 2003 SP1, if the Windows Firewall is turned on the CA DLP installation wizard automatically registers the CA DLP infrastructure as a firewall exception. This enables data to replicate unhindered through the firewall between CA DLP machines.

However, this automatic configuration requires the firewall setting ‘Don’t allow exceptions’ to be turned off on the target machine. By default, the firewall is turned on for Windows XP SP2 and off for Windows 2003 SP1.

Important! If ‘Don’t allow exceptions’ is on, the Windows Firewall allows no firewall exceptions, including the CA DLP infrastructure. This means that the client machine will be unable to contact its parent server. As a consequence, the client machine will be unable to receive any user or machine policies. This effectively paralyzes any CA DLP agents on the client machine so they are unable to monitor, capture or control users’ email or Web activity.