二楼的分享很好了,适合日常使用,WFC本身直接用的系统墙,占用不算高。
WFC还有很多高级用法,如自定义指定的端口,协议,IP地址(可以用逗号隔开的列表定义多个IP)等等。可以满足非常精细化的定制安全需求。
又比如对于微软Onedrive、Office相关服务的TCP、UDP链接,限制仅允许连接到微软的IP地址,阻止其他IP的连接请求,可以直接复制下面的放到远程地址配置中:
2.18.32.0-2.18.47.255,2.18.160.0-2.18.175.255,2.23.0.0-2.23.15.255,13.64.0.0-13.107.255.255,20.0.0.0-20.31.255.255,20.33.0.0-20.128.255.255,20.135.0.0-20.136.255.255,20.150.0.0-20.153.255.255,20.180.0.0-20.191.255.255,20.192.0.0-20.255.255.255,23.192.0.0-23.223.255.255,40.74.0.0-40.125.127.255,40.126.0.0-40.126.63.255,51.10.0.0-51.13.255.255,51.132.0.0-51.132.255.255,52.96.0.0-52.115.255.255,52.145.0.0-52.191.255.255,52.224.0.0-52.255.255.255,72.246.0.0-72.247.255.255,104.40.0.0-104.47.255.255,104.64.0.0-104.127.255.255,104.208.0.0-104.215.255.255,184.24.0.0-184.31.255.255,192.229.128.0-192.229.255.255
GlassWire只是漂亮点,实际性能上开销更大效率更低。
|