en-US windows computer

Windows Defender Firewall: Prohibit unicast response to multicast or broadcast requests

Verified with Windows 11 25H2 — updated on July 10, 2026

Windows 11 25H2

Supported on: At least Windows XP Professional with SP2

Path in the GPO console

Computer Configuration\Administrative Templates\Network\Network Connections\Windows Defender Firewall\Domain Profile

Description

Prevents this computer from receiving unicast responses to its outgoing multicast or broadcast messages. If you enable this policy setting, and this computer sends multicast or broadcast messages to other computers, Windows Defender Firewall blocks the unicast responses sent by those other computers. If you disable or do not configure this policy setting, and this computer sends a multicast or broadcast message to other computers, Windows Defender Firewall waits as long as three seconds for unicast responses from the other computers and then blocks all later responses. Note: This policy setting has no effect if the unicast message is a response to a Dynamic Host Configuration Protocol (DHCP) broadcast message sent by this computer. Windows Defender Firewall always permits those DHCP unicast responses. However, this policy setting can interfere with the NetBIOS messages that detect name conflicts.

Registry

HKLM SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile

Value name: DisableUnicastResponsesToMulticastBroadcast

Enabled: DisableUnicastResponsesToMulticastBroadcast = 1

Disabled: DisableUnicastResponsesToMulticastBroadcast = 0

Export Builder

BETA

Configure the state, scope and options, then generate .reg, PowerShell, Intune and SCCM outputs — or add the setting to a multi-setting collection.

These exports write the registry — this is not a managed GPO.

.reg file

Windows Registry Editor Version 5.00

; Exported from gporais.com
; Policy: Windows Defender Firewall: Prohibit unicast response to multicast or broadcast requests
; State: Enabled
; Supported on: At least Windows XP Professional with SP2

[HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile]
"DisableUnicastResponsesToMulticastBroadcast"=dword:00000001
More formats (PowerShell, Intune, SCCM)

PowerShell

# Exported from gporais.com
# Policy: Windows Defender Firewall: Prohibit unicast response to multicast or broadcast requests
# State: Enabled
# Supported on: At least Windows XP Professional with SP2

$path = 'HKLM:\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile'
New-Item -Path $path -Force | Out-Null
Set-ItemProperty -Path $path -Name 'DisableUnicastResponsesToMulticastBroadcast' -Value 1 -Type DWord

Building a multi-setting collection? Add this setting and generate combined .reg / PowerShell / GPO scripts.

Open the Builder

Embed this policy on your site

What to embed
Theme

Adds one script line: the theme follows your site’s appearance and the height fits the content. If your site blocks scripts, the embed follows the visitor’s system theme.

Preview