Once the computer is connected to the local area network, it is easy for others to access their computer, causing privacy leaks, which is the last thing we want to happen. Therefore, if your computer does not need to share information with other users of the LAN, then it is recommended to adopt a policy that prohibits LAN computers from accessing their computers to ensure security.
Here's a way to disable LAN access to my computer via the security policy that comes with Windows.
1. Create IP Security Policy
Open Control Panel-Administrative Tools-Local Security policy
Right-click "IP Security Policy on local machine"--Create IP Security Policy----> Next----> Name casually write, such as input block , and then always click Next, the cue point is, until completed, this time created a named "Block" Strategy.
2. Managing IP filter tables and filter actions
Right-click "IP Security Policy on local machine"--Manage IP filter tables and filter actions----> Points add----> name Tim 75.156.25 (to identify the best to fill in the corresponding IP segment)----> Point add----> next---- > Source Address Select a specific IP subnet, IP input 75.156.25.0 subnet mask to 255.255.255.0----> Next----> Destination address select My IP address----> Next----> Protocol class Type for any----> next----> Complete close all
3. Block IP Settings
Right click on the set of policies called " block ", click Properties----> Add----> Next----> Next network type Select all network connections----> Next----> The cue point is----> To the IP filter list, the point where we just created the option named 75.156.25----> Next----> select block (if the list is not added by clicking "Add")----> next to finish, close
The last point of "block" This strategy, right-click, assign, so far we have blocked 75.156.25 The opening of the network segment, of course, also blocked the 75.156.25.192 this IP attack, such as also to seal other IP attacks the same operation can.
Knowledge Expansion
How to disable native access to a specified IP address
1. Internet Options > Security > select Restricted Sites and enter site or IP
2, through the firewall, router filtering rules can be very convenient to limit
3, modify the system's hosts file to limit
Open the Hosts file with Notepad (C:\WINDOWS\system32\drivers\etc\hosts)
Enter and fill in the last line
0.0.0.0 123.456.789.123
Replace "123.456.789.123" with a forbidden IP (or URL)
Restrict LAN partial IP access to my Computer via security policy