Intune Configuration Firewall Setting Keep Policy in place but remove it select devices

rr-4098 2,141 Reputation points
2025-09-07T01:51:58.3133333+00:00

In Intune I created a configuration policy to create an inbound firewall rule on select devices which worked perfectly. I want to keep the config in place, but have it set so I can also remove the firewall rule on devices if they are part of a group to do so. I know I can create another firewall rule to block this traffic but is there an easy way to remove it? I want it set so the rule gets applied and added only when needed.

Microsoft Security | Intune | Configuration
{count} votes

1 answer

Sort by: Most helpful
  1. Prathista Ilango 670 Reputation points Microsoft Employee
    2025-11-20T11:36:18.3433333+00:00

    Hello rr-4098,

    It depends on the scenario.

    If you are looking for removing the inbound on certain devices only, you need to have 2 policies for allow and block and assigned groups should contain the intended devices.

    If you are looking for flexibility in changing the rules for all targeted devices, try the reusable groups.

    Refer to: Use reusable groups of settings policies in Microsoft Intune - Microsoft Intune | Microsoft Learn
    Hope this helps!

    If you found the information above helpful, please Click Yes. This will assist others in the community who encounter a similar issue, enabling them to quickly find the solution and benefit from the guidance provided.

    0 comments No comments

Your answer

Answers can be marked as 'Accepted' by the question author and 'Recommended' by moderators, which helps users know the answer solved the author's problem.