Skip to content
KitploitKITPLOIT
ToolsExploitsBlog
Log in
Submit
ToolsExploitsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
simplewall — Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer. | Kitploit
Tools/GitHubGitHub/henrypp/simplewall
Defensive ToolsNetwork Security
GitHubhenrypp/simplewall

simplewall

Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

View Repository
8.8k6462018h 49m agoReviewed by Kitploit

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

simplewall

Definitely for advanced users.


Description:

Simple tool to configure Windows Filtering Platform (WFP) which can configure network activity on your computer.

The lightweight application is less than a megabyte, and it is compatible with Windows 7 SP1 and higher operating systems. You can download either the installer or portable version. For correct working you are require administrator rights.

Nota bene:

Keep in mind, simplewall is not a control UI over Windows Firewall, and does not interact in any level with Windows Firewall. It works over Windows Filtering Platform (WFP) which is a set of internal API and system services that provide a platform for creating network filtering applications. Windows Filtering Platform is a development technology and not a firewall itself, but simplewall is the tool that uses this technology.

Features:

  • Simple interface without annoying pop ups
  • Rules editor (create your own rules)
  • Internal blocklist (block Windows spy / telemetry)
  • Dropped packets information with notification and logging to a file feature (win7+)
  • Allowed packets information with logging to a file feature (win8+)
  • Windows Subsystem for Linux (WSL) support
  • Windows Store support (win8+)
  • Windows services support
  • Free and open source
  • Localization support
  • IPv6 support
To activate portable mode, create "simplewall.ini" in application folder, or move it from "%APPDATA%\Henry++\simplewall".

System requirements:

  • Windows 7, 8, 8.1, 10, 11 64-bit/ARM64
  • An SSE2-capable CPU
  • KB2533623 KB3063858 update for Windows 7 was required

Donate:

  • Bitcoin (BTC)
  • Ethereum (ETH)
  • Yandex Money (RUB)
  • Paypal (USD)

GPG Signature:

Binaries have GPG signature simplewall.exe.sig in application folder.

  • Public key: pubkey.asc (pgpkeys.eu)
  • Key ID: 0x5635B5FD
  • Fingerprint: D985 2361 1524 AB29 BE73 30AC 2881 20A7 5635 B5FD

Reviews of idiots:

Look at them, he does not know about .gitmodules and how to use, lol.

PS: Without idiots we are not to be fun, yeah!

Installation:

When install rules, you can choose two modes:

  • Permanent rules - rules are working until you disable it manually.
  • Temporary rules - rules are reset after the next reboot.

Uninstall:

When you uninstall simplewall, all previously configured filters stay alive in system. To remove all filters created by simplewall, start simplewall and press "Disable filters" button.

Command line:

-install - enable filtering.
-install -temp - enable filtering until next reboot.
-install -silent - enable filtering without prompt.
-uninstall - remove all installed filters.

Rules editor:

simplewall have two types of custom user rules rules:

  • Global rules: rule applied for all applications.
  • Special rules: rule applied only for specified applications.

Rule syntax format:

To set rule applications, open rule and then navigate to "Apps" tab.

Rule syntax format:
  • IP addresses 192.168.0.1; 192.168.0.1; [fc00::]
  • IP addresses with port 192.168.0.1:80; 192.168.0.1:443; [fc00::]:443;
  • IP ranges 192.168.0.1-192.168.0.255; 192.168.0.1-192.168.0.255;
  • IP ranges (with port) 192.168.0.1-192.168.0.255:80; 192.168.0.1-192.168.0.255:443; (v2.0.20+)
  • IP with prefix lengths (CIDR) 192.168.0.0/16; 192.168.0.0/24; fe80::/10
  • Ports 21; 80; 443;
  • Ports ranges 20-21; 49152-65534;

To specify more than one ip, port and/or host, use semicolon.

IPv4 CIDR blocks:
Address formatMask
a.b.c.d/32255.255.255.255
a.b.c.d/31255.255.255.254
a.b.c.d/30255.255.255.252
a.b.c.d/29255.255.255.248
a.b.c.d/28255.255.255.240
a.b.c.d/27255.255.255.224
a.b.c.d/26255.255.255.192
a.b.c.d/25255.255.255.128
a.b.c.0/24255.255.255.0
a.b.c.0/23255.255.254.0
a.b.c.0/22255.255.252.0
a.b.c.0/21255.255.248.0
a.b.c.0/20255.255.240.0
a.b.c.0/19255.255.224.0
a.b.c.0/18255.255.192.0
a.b.c.0/17255.255.128.0
a.b.0.0/16255.255.0.0
a.b.0.0/15255.254.0.0
a.b.0.0/14255.252.0.0
a.b.0.0/13255.248.0.0
a.b.0.0/12255.240.0.0
a.b.0.0/11255.224.0.0
a.b.0.0/10255.192.0.0
a.b.0.0/9255.128.0.0
a.0.0.0/8255.0.0.0
a.0.0.0/7254.0.0.0
a.0.0.0/6252.0.0.0
a.0.0.0/5248.0.0.0
a.0.0.0/4240.0.0.0
a.0.0.0/3224.0.0.0
a.0.0.0/2192.0.0.0
a.0.0.0/1128.0.0.0
0.0.0.0/00.0.0.0

IPv6 CIDR blocks:

IPv6 CIDR blocks

FAQ:

Q: Are internet connections blocked when simplewall is not running?

A: Yes. Installed filters are working even if simplewall is terminated.

Q: What apps are blocked in default configuration?

A: By default, simplewall blocks all applications. You do not need to create custom rules to block specific applications.

Q: Is it safe to use simplewall with Windows Firewall?

A: Yes. You do not need to disable Windows Firewall. These two firewalls work independently.

Q: How can i disable blocklist entirely?

A: Open Settings -> Blocklist and then click the radio buttons labeled Disable.

Q: Where is blacklist mode?

A: Blacklist was removed many days ago for uselessness. But if you need it, you can still configure it.

Solution: Configure blacklist mode in simplewall:
Download Tool