Hello again,
GPMC will run on either Windows XP (with at least SP1) or Windows Server
2003. It is recommended to manage Group Policy from an administrative
machine, rather than on the domain controllers themselves. Since you are
running Windows 2000 domain controllers you will not be able to load GPMC on
those servers. However, if you can fully manage Group Policy from a Windows
XP machine acting as an administrative workstation. Since you appear to be
wanting to managing XP SP2 machines I am hopefulyl that your administrative
machines are in fact XP.
Yes, you can disable the Windows Firewall, through the .adm files we ship
with XP SP2. Checkout the following policy setting:
Administrative Templates\Network\Network Connections\Windows
Firewall\Domain Profile\Windows Firewall: Protect all network connections
Disabling this policy setting will turn off the Windows Firewall.
Unless you have a compelling reason to do so (for example, you already have
a different Firewall installed) we would recommend that you look at some of
the other policy settings associated with the WIndows Firewall to open only
those porgrams or ports you need, rather than disable it altogether.
BTW, I should add that the Windows Firewall and ICF are two very
different beasts
In Windows XP SP2 you need to be using the Windows
Firewall (not ICF) policy settings.
I hope this helps.
--
Mark Williams
Program Manager, Group Policy
http://www.microsoft.com/technet/grouppolicy
This posting is provided "AS IS" with no warranties, and confers no rights.