C# 操作系統防火牆


很多時候,我們的程序是通過網絡通信(如TCP或者UDP協議+端口),而將制作好的程序安裝包給客戶用時,發現會出現不能通信的現象(或者在這台電腦是可以的,卻在另一台不可以),原因是防火牆阻止了,需要添加防火牆例外。現在將代碼記錄下來,方便以后備用。

在Visual studio 項目引用右鍵里面添加引用,選中COM然后找到NetFwTypeLib,確認,然后新建類FireWallHelp.cs添加

using NetFwTypeLib;

image

 

代碼如下

using System;
using System.Collections.Generic;
using System.Text;
using NetFwTypeLib;

namespace FireWallTest
{
    public  class FireWallHelp
    {
        /// <summary>
        /// 添加防火牆例外端口
        /// </summary>
        /// <param name="name">名稱</param>
        /// <param name="port">端口</param>
        /// <param name="protocol">協議(TCP、UDP)</param>
        public static void NetFwAddPorts(string name, int port, string protocol)
        {
            //創建firewall管理類的實例
            INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));

            INetFwOpenPort objPort = (INetFwOpenPort)Activator.CreateInstance(
                Type.GetTypeFromProgID("HNetCfg.FwOpenPort"));

            objPort.Name = name;
            objPort.Port = port;
            if (protocol.ToUpper() == "TCP")
            {
                objPort.Protocol = NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_TCP;
            }
            else
            {
                objPort.Protocol = NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_UDP;
            }
            objPort.Scope = NET_FW_SCOPE_.NET_FW_SCOPE_ALL;
            objPort.Enabled = true;

            bool exist = false;
            //加入到防火牆的管理策略
            foreach (INetFwOpenPort mPort in netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts)
            {

                if (objPort == mPort)
                {
                    exist = true;
                    break;
                }
            }
            if (exist)
            {
                System.Windows.Forms.MessageBox.Show("exist"); 
            }
            if (!exist) netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts.Add(objPort);
        }
        /// <summary>
        /// 將應用程序添加到防火牆例外
        /// </summary>
        /// <param name="name">應用程序名稱</param>
        /// <param name="executablePath">應用程序可執行文件全路徑</param>
        public static void NetFwAddApps(string name, string executablePath)
        {
            //創建firewall管理類的實例
            INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));

            INetFwAuthorizedApplication app = (INetFwAuthorizedApplication)Activator.CreateInstance(
                Type.GetTypeFromProgID("HNetCfg.FwAuthorizedApplication"));

            //在例外列表里,程序顯示的名稱
            app.Name = name;

            //程序的路徑及文件名
            app.ProcessImageFileName = executablePath;

            //是否啟用該規則
            app.Enabled = true;

            //加入到防火牆的管理策略
            netFwMgr.LocalPolicy.CurrentProfile.AuthorizedApplications.Add(app);

            bool exist = false;
            //加入到防火牆的管理策略
            foreach (INetFwAuthorizedApplication mApp in netFwMgr.LocalPolicy.CurrentProfile.AuthorizedApplications)
            {
                if (app == mApp)
                {
                    exist = true;
                    break;
                }
            }
            if (!exist) netFwMgr.LocalPolicy.CurrentProfile.AuthorizedApplications.Add(app);
        }
        /// <summary>
        /// 刪除防火牆例外端口
        /// </summary>
        /// <param name="port">端口</param>
        /// <param name="protocol">協議(TCP、UDP)</param>
        public static void NetFwDelApps(int port, string protocol)
        {
            INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));
            if (protocol == "TCP")
            {
                netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts.Remove(port, NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_TCP);
            }
            else
            {
                netFwMgr.LocalPolicy.CurrentProfile.GloballyOpenPorts.Remove(port, NET_FW_IP_PROTOCOL_.NET_FW_IP_PROTOCOL_UDP);
            }
        }
        /// <summary>
        /// 刪除防火牆例外中應用程序
        /// </summary>
        /// <param name="executablePath">程序的絕對路徑</param>
        public static void NetFwDelApps(string executablePath)
        {
            INetFwMgr netFwMgr = (INetFwMgr)Activator.CreateInstance(Type.GetTypeFromProgID("HNetCfg.FwMgr"));

            netFwMgr.LocalPolicy.CurrentProfile.AuthorizedApplications.Remove(executablePath);

        }
    }
}


免責聲明!

本站轉載的文章為個人學習借鑒使用,本站對版權不負任何法律責任。如果侵犯了您的隱私權益,請聯系本站郵箱yoyou2525@163.com刪除。



 
粵ICP備18138465號   © 2018-2025 CODEPRJ.COM