Welcome, Guest. Please login or register.
Did you miss your activation email?
May 24, 2013, 12:46:35 PM

Login with username, password and session length

663956 Posts
70618 Topics
145249 Members

Latest Member: brad454

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Security Products & Services
| |-+  Comodo Internet Security - CIS
| | |-+  Help - CIS
| | | |-+  Defense+ / Sandbox Help - CIS
| | | | |-+  Elevated privileges alert
« previous next »
Pages: [1] Go Down Print
Author Topic: Elevated privileges alert  (Read 2612 times)
peci1
Newbie
*
Offline Offline

Posts: 7


« on: June 10, 2010, 11:58:31 AM »

Hi, yesterday I updated to version 4 of Comodo Firewall. I like configuring defense+ to a high level of security (relatively much alerts), but I don't see the point of being alerted of a program trying to get elevated privileges on win7 - because the system anyways asks me for granting the privileges.

I looked for an option to disable just these alerts, but I don't see any option for disabling just these. Can you please give me an advice? (I don't want to disable any other alerts)
Logged
Ovidiu G.
Malware Research Group
Comodo's Hero
*****
Offline Offline

Posts: 260


The only real valuable thing is intuition-Einstein


WWW
« Reply #1 on: June 10, 2010, 03:09:12 PM »

Hi, yesterday I updated to version 4 of Comodo Firewall. I like configuring defense+ to a high level of security (relatively much alerts), but I don't see the point of being alerted of a program trying to get elevated privileges on win7 - because the system anyways asks me for granting the privileges.

I looked for an option to disable just these alerts, but I don't see any option for disabling just these. Can you please give me an advice? (I don't want to disable any other alerts)

Hello,

Did you have updated CIS to version 4.1 and have Sandbox enabled? In this version the elevated privileges alert is a little bit changed i.e. you can click "Sandbox" button and run from beginnig a application with restrited rights. When you disable UAC on Win 7 and change CIS to Proactive Security Configuration, you will gett less alerts and more security. It is only a suggestion. Smiley

Ovidiu  


* Elevated Privilege Alert.png (28 KB, 404x434 - viewed 6 times.)
Logged

peci1
Newbie
*
Offline Offline

Posts: 7


« Reply #2 on: June 10, 2010, 03:26:42 PM »

Hello,

Did you have updated CIS to version 4.1 and have Sandbox enabled? In this version the elevated privileges alert is a little bit changed i.e. you can click "Sandbox" button and run from beginnig a application with restrited rights. When you disable UAC on Win 7 and change CIS to Proactive Security Configuration, you will gett less alerts and more security. It is only a suggestion. Smiley

Ovidiu  

Thanks for your suggestion, Ovidiu, but it is not good for me. I don't want to disable the UAC.
I haven't read any information about sandbox yet, but I would think that a sandboxed program cannot make permanent changes to the system, does it?
Logged
Ovidiu G.
Malware Research Group
Comodo's Hero
*****
Offline Offline

Posts: 260


The only real valuable thing is intuition-Einstein


WWW
« Reply #3 on: June 10, 2010, 03:48:00 PM »

Thanks for your suggestion, Ovidiu, but it is not good for me. I don't want to disable the UAC.
I haven't read any information about sandbox yet, but I would think that a sandboxed program cannot make permanent changes to the system, does it?

Indeed, a sandboxed application cannot make permanent changes to the system. You can find out more about Sandbox here: http://forums.comodo.com/defense-sandbox-help-cis/introduction-to-the-sandbox-t53268.0.html;msg377448#msg377448

I have this configuration on my computer (Win7) and D+ on Safe mode and I had no problems so far.
Logged

peci1
Newbie
*
Offline Offline

Posts: 7


« Reply #4 on: June 10, 2010, 03:58:24 PM »

Indeed, a sandboxed application cannot make permanent changes to the system. You can find out more about Sandbox here: http://forums.comodo.com/defense-sandbox-help-cis/introduction-to-the-sandbox-t53268.0.html;msg377448#msg377448

I have this configuration on my computer (Win7) and D+ on Safe mode and I had no problems so far.

Thanks for the link. I see now that I don't want to use sandbox by default. I still try to find an elegant solution, but unsucessfully...
Logged
mouse1
Global Moderator
Comodo's Hero
*****
Online Online

Posts: 7213


« Reply #5 on: June 11, 2010, 02:39:28 AM »

Thanks for the link. I see now that I don't want to use sandbox by default. I still try to find an elegant solution, but unsucessfully...

If you untick 'automatically detect installers', under sandbox settings that should help. Installations may then fail if you have the sandbox enabled though.

Also any files that still give this alert you can define as installer/updaters in the computer security policy. I suggest that you don't do this for any files you may use to run unknown software - security risk!

Best wishes

Mouse
Logged

peci1
Newbie
*
Offline Offline

Posts: 7


« Reply #6 on: June 11, 2010, 02:55:00 AM »

If you untick 'automatically detect installers', under sandbox settings that should help. Installations may then fail if you have the sandbox enabled though.

Also any files that still give this alert you can define as installer/updaters in the computer security policy. I suggest that you don't do this for any files you may use to run unknown software - security risk!

Best wishes

Mouse

Thank you, this seems to help... Adding a rule for regularly used applications isn't a problem, my question was mainly pointed to installers.
Logged
Tags: Defense+ 
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.048 seconds with 22 queries.
Powered by SMF 1.1.18 | SMF © 2006, Simple Machines Design by 7dana.com