Windows-Containers icon indicating copy to clipboard operation
Windows-Containers copied to clipboard

Change Default Container's Network Outbound policy to DENY-ALL

Open winkingturtle-vmw opened this issue 2 months ago • 3 comments

What is your question? After Reading this document , it mentions that Default Outbound: ALLOW ALL for Windows Server Containers. It also mentions that it's possible to change the default for HNSNetwork to be DENY-ALL. We tried changing all firewall networks to Block, but that didn't have any effect on the NAT network and containers created underneath it. Can you please point us to correct syscall/powershell/documentation that will change the default back to DENY-ALL ? DENY-ALL is the default behavior for Windows Server 2019.

winkingturtle-vmw avatar Oct 06 '25 18:10 winkingturtle-vmw

Thank you for creating an Issue. Please note that GitHub is not an official channel for Microsoft support requests. To create an official support request, please open a ticket here. Microsoft and the GitHub Community strive to provide a best effort in answering questions and supporting Issues on GitHub.

github-actions[bot] avatar Oct 06 '25 18:10 github-actions[bot]

This issue has been open for 30 days with no updates. no assignees, please provide an update or close this issue.

Pinging to keep this issue open

winkingturtle-vmw avatar Nov 07 '25 21:11 winkingturtle-vmw