Skip to content
Sam360 Logo Sam360 Logo Sam360 Logo
  • Support
    • Documentation
    • Submit Ticket
  • Contact
  • Support
    • Documentation
    • Submit Ticket
  • Contact

Introduction

  • Overview
  • Collecting Inventory
  • Software Metering
  • What Data Is Collected?
  • Data Security
  • Quick Start Guide (Software Baseline Clients)

Portal

Introduction
  • Grid – Quick Filters
  • Notes – Markdown Guide
  • Grid – Introduction
Configuration
  • Forgot Your Password
  • Reset User Password
  • Add Portal User
  • Grant Portal Access To Existing User
  • Manage Client Permissions
Sample Reports
  • CyberSecurity Excel Overview
Importing/Exporting Data
  • Import Inventory And License Data
  • Import Device Data (CSV file)
  • Import Software Inventory Data (CSV file)
  • Import VMware Data
  • Import SCCM Data
  • Import Hyper-V Data
  • Import Office 365 Data
  • Import Sam360 Inventory Data (s3tools)
  • Import License Data
  • Exporting To Microsoft Universal Inventory

Data Collection

Management Point
  • Sam360 Management Point Introduction
  • Install Management Point
  • Management Point Service Account Requirements
  • How the Remote Scan works
  • Start Management Point Configuration Tool
  • 3rd Party & Cloud Integration
    • VMware Integration
    • XenServer Integration
    • Microsoft 365 Integration
    • Install/Update Required PowerShell Modules
    Technical Notes
    • Management Point Footprint
    • Improve Remote Scan Coverage
    • Configure Windows Firewall with Group Policy
    • Disable Communication With Sam360 Servers
    • Inspecting Inventory Data
    • Management Point Change Log
    • Update Management Point Credentials
Agent
  • Sam360 Agent Introduction
  • Deploy Agent Manually
  • Deploy Agent with Group Policy
  • Deploy Agent Using Management Point
  • Enable logging
  • Locate Sam360 Discovery Agent Log Files
  • Agent and Management Point Proxy
Web Scan
  • Sam360 Web Scan Introduction
  • Upload Inventory Data Files To Sam360
  • Gather Inventory From Offline Networks
  • Gather Inventory From An Offline Computer
  • Export List Of Devices From Active Directory

Data Model

  • Overview
Hardware
  • ActiveSync Device
  • Device
  • Terminal Device
  • Wireless Network
  • Network Card
  • Logical Drive
  • Physical Drive
Licensing
  • Agreement
  • Contact
  • License Position Record
  • License
Software
  • Application File Instance
  • Application File
  • Product
  • Product Installation
  • SQL Server Instance
  • Vendor
Settings
  • Rule
  • Client File
  • Entity History Event
  • Management Point
  • Management Point Task
  • Product Name Modifier
  • Report
  • Tenant
  • Report Task
Usage
  • Software Usage Record
  • Document
  • Hourly Software Usage Record
  • Netstat Connection
  • Performance Snapshot
  • IP Address
Configuration
  • Exchange Server Instance
  • Group
  • Web Application
  • OEM Warranty
  • Security Info Product
  • Site Collection
  • Site
  • SQL Server Database
  • SQL Server Service
  • User Permission
  • Web Site
  • Windows Domain
  • Windows Service
  • Windows Update
  • Device Certificate
  • Device VPN
  • Security Product Info
  • IIS Web Application
Users
  • User
Cloud
  • Azure Tenant
  • Azure Sign In Audit Log
  • Azure Application
  • Azure Sign In Auth Method
  • Home
  • Support Documentation
  • Data Collection
  • Management Point
  • Technical Notes
  • Configure Windows Firewall with Group Policy

The Sam360 Management Point gathers inventory from remote devices by querying the WMI and/or Remote Registry services on the device to be scanned. The scan performance can be improved if ‘File Sharing’ is also enabled and available on the target device.

The services used during the scan process use the following ports by default.

Service Port
WMI 135
Remote Registry 139
File Sharing 139 & 445

 

In certain circumstances access to these ports may be blocked by Windows Firewall on the target device. This can slow down the scan process, reduce the amount of data that can be collected or even result in a failed scan. If the target devices are part of a Windows domain, it’s possible to remotely update the Windows Firewall configuration to facilitate the scan process using Group Policy.

To update Windows Firewall to enable WMI and File Sharing access using Group Policy

  1. Log on to a domain controller or any device with Windows Group Policy Management Editor installed
  2. Launch Group Policy Management Console (Also known as GPMC) by pressing the Windows logo key + R to open the RUN dialog box. Type gpmc.msc in the text box, and then click OK or press ENTER.
  3. Expand the target Forest & Domain and select which Group Policy should be updated with the Firewall configuration updates. Selecting ‘Default Domain Policy’ will usually ensure that the update will be applied to all devices on the domain.
  4. Right Click the appropriate Policy and click Edit to launch the Group Policy Management Editor
  5. Expand the Computer Configuration > Policies > Windows Settings > Security Settings > Windows Firewall with Advanced Security > Windows Firewall with Advanced Security > Inbound Rules node.
  6. Click Action, then New Rule
  7. Choose the Predefined option, select Windows Management Instrumentation (WMI) from the drop-down list and click Next.
  8. Select Windows Management Instrumentation (WMI-In), Next
  9. Click ‘Allow the Connection’, Finish.
  10. Click Action, then New Rule
  11. Choose the Predefined option, select File and Printer Sharing from the drop-down list and click Next.
  12. Select File and Printer Sharing (NB-Session-In) and File and Printer Sharing (SMB-In), Next
  13. Click ‘Allow the Connection’, Finish.
  14. Close the Group Policy Management Console

The policy will generally be applied to all active targeted devices within 24 hours and access to the WMI, Remote Registry and File Sharing services no longer be blocked by Windows Firewall.

Rate This Article :
Share This Article :
  • Facebook
  • Twitter
  • LinkedIn
  • Pinterest
Updated on March 16, 2020

Leave A Comment Cancel reply

Partner First

Enabling data driven IT projects
  • Download

Get Support

    support@sam360.com
    Mon-Fri: 09:00 – 18:00 UTC
  • +353 1 566 6390‬

Find Us

NCI Research Centre, IFSC Dublin 1, Ireland
  • Check maps
© Copyright 2012 - | Sam360 | All Rights Reserved
TwitterLinkedInEmail