Symantec United StatesDocument ID:2004070114274248
Last Modified:04/25/2006

Using Symantec Client Firewall 7.x or later in an Active Directory Environment

Situation:This document describes how to allow Active Directory connections on computers running Symantec Client Firewall 7.x or later.

Solution:To allow Active Directory communications, merge the Activedir.cfu policy file in the \Tools\PolicyFiles folder on CD 4 with your current policy file.

To merge the Active Directory policy file
  1. Start Symantec Client Firewall Administrator.
  2. Click File > Open.
  3. In the File Open dialog box, find and select your policy file, and then click Open.
  4. Click File > Merge.
  5. Go to the \Tools\PolicyFiles folder on CD 4.
  6. In the File Open dialog box, select All Files in the Files of Type drop-down menu.
  7. Do one of the following, depending on the version of Symantec Client Firewall:
    • For Symantec Client Firewall 8.x, find and select the Ad_ipsec.cfu file or the Ad_rpc.cfu file.
      Use the Ad_ipsec.cfu file in Active Directory environments that use IPSec. Use the Ad_rpc.cfu file in all other Active Directory environments.
    • For Symantec Client Firewall 7.1, find and select the Activedir.cfu policy file.
  8. In the Merge Options window, click All Rules.
  9. In the Confirmation window, click Yes to All.
  10. Save the policy file, and use Symantec System Center to deploy the policy to a client.
    To learn how to do this, read the document Using Symantec System Center 6.x or later to distribute a Symantec Client Firewall policy.


References:To create a custom policy using the Symantec Client Firewall Administrator, follow the directions in the document for your program version:


  • Product(s): Symantec Client Firewall 7.1, Symantec Client Firewall 8.0, Symantec Client Security 3.0, Symantec Client Firewall 8.7, Symantec Client Security 3.1
    Operating Systems(s): Windows NT, Windows 2000, Windows XP Pro, Windows 98, Windows Me, Windows XP Professional Edition, Windows XP Tablet PC, Windows XP Media Center Edition 2005
    Date Created: 07/01/2004