如何检查防火墙规则是否存在

4

我有一个按钮,点击一次后会向防火墙添加一条新规则。但问题在于,它可以被多次点击,从而添加许多规则。

我该如何检查防火墙中是否存在该规则?(或者说能否检查规则?)

下面是我添加规则的代码:

ProcessStartInfo run = new ProcessStartInfo();
run.FileName = "cmd.exe";
run.Verb = "runas";
run.Arguments = "/C netsh advfirewall firewall add rule name=\"Block IP Rule\" dir=in interface=any action=block remoteip=x.x.x.x";
run.WindowStyle = ProcessWindowStyle.Hidden;
Process.Start(run);

2
尝试删除现有规则并重新添加它 :),保持简单。 - Mohammad Olfatmiri
3个回答

5
    public static void RemoveFirewallRules(string RuleName = "BreakermindCom")
{
    try
    {
        Type tNetFwPolicy2 = Type.GetTypeFromProgID("HNetCfg.FwPolicy2");
        INetFwPolicy2 fwPolicy2 = (INetFwPolicy2)Activator.CreateInstance(tNetFwPolicy2);
        var currentProfiles = fwPolicy2.CurrentProfileTypes;               

        // Lista rules
        List<INetFwRule> RuleList = new List<INetFwRule>();

        foreach (INetFwRule rule in fwPolicy2.Rules)
        {
            // Add rule to list
            //RuleList.Add(rule);
            // Console.WriteLine(rule.Name);
            if (rule.Name.IndexOf(RuleName) != -1)
            {
                // Now add the rule
                INetFwPolicy2 firewallPolicy = (INetFwPolicy2)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwPolicy2"));                     
                firewallPolicy.Rules.Remove(rule.Name);
                Console.WriteLine(rule.Name + " has been deleted from Firewall Policy");
            }
        }
    }
    catch (Exception r)
    {
        Console.WriteLine("Error delete rule from firewall");
    }}

Works ... :}


https://dev59.com/OW_Xa4cB1Zd3GeqP3aZm - user7601056
谢谢,虽然我尝试了Oli的最简单的想法,但在我的情况下它更好。 - newbieguy
这是一个与MySQL数据库相关的示例,用于禁止和允许IP地址。链接到示例代码:https://github.com/fxstar/Chash/blob/master/C%23FirewallBanAllowIPfromMysql.cs - user7601056

3

在初始化防火墙规则时,您可以使用linq进行选择/指定。

对于具有相同名称的多个防火墙规则:

    INetFwPolicy2 firewallPolicy = (INetFwPolicy2)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwPolicy2")); 
    List<INetFwRule> firewallRules = firewallPolicy.Rules.OfType<INetFwRule>().Where(x => x.Name.Contains(fwRuleName)).ToList();

    foreach (INetFwRule rule in firewallRules)
    {
        firewallPolicy.Rules.Remove(rule.Name);
    }

对于单个防火墙规则:

    INetFwPolicy2 firewallPolicy = (INetFwPolicy2)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwPolicy2"));
    INetFwRule firewallRule = firewallPolicy.Rules.OfType<INetFwRule>().Where(x => x.Name == fwRuleName).FirstOrDefault();
    firewallPolicy.Rules.Remove(firewallRule.Name);

但是,如果您已经知道防火墙规则名称,也可以尝试执行以下命令(未经测试,但没有 Where 子句):

    INetFwPolicy2 firewallPolicy = (INetFwPolicy2)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwPolicy2"));
    firewallPolicy.Rules.Remove(fwRuleName);

重点是展示linq语法和使用它搜索特定名称、模式等的灵活性。


1

WindowsFirewallHelper类。可作为VS的NuGet包使用。 我寻找了数天解决方案,并找到了这个。对于一个非常重要的项目,它改变了我的生活。

以下是实现你想要的代码:

  private void initFWrule(object sender, EventArgs e)
        {
            Console.WriteLine("CHECKING FIREWALL RULE EXISTENCE");
            var myRule = FirewallManager.Instance.Rules.SingleOrDefault(r => r.Name == "BlockUTG_Port-26881");
             //substitute your rule name in place of BlockUTG_Port-26881 above
            try
            {
                if (myRule != null)
                {
                    Console.WriteLine("Rules DOES Exist");
                }

                else
                {
                    Console.WriteLine("Rules DOES NOT Exist");
                    //run your code here to create rule
 
                }
            }

            catch (Exception ex)
            {
                MessageBox.Show(ex.Message);
            }


网页内容由stack overflow 提供, 点击上面的
可以查看英文原文,
原文链接