Welcome, Guest. Please login or register.
September 06, 2008, 08:47:11 PM

Login with username, password and session length

189186 Posts
22040 Topics
52856 Members

Latest Member: tlaforet

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Firewall
| | |-+  Feedback/Comments/Announcements/News
| | | |-+  Comodo Firewall Wishlist V6
« previous next »
Pages: [1] 2 3 ... 38 Go Down Print
Author Topic: Comodo Firewall Wishlist V6  (Read 41392 times)
jasper2408
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 651


« on: November 24, 2007, 12:59:13 AM »

Please post what you would like to see in upcoming versions of Comodo Firewall Pro here.

thanks,

jasper
Logged

CFP 3.0.22.327beta  CMF   Avast Pro  SAS Pro Sandboxie Win XP PRO SP2 (x32)
AnotherOne
Computer Security Testing Group
Comodo's Hero
*****
Offline Offline

Posts: 665


« Reply #1 on: November 24, 2007, 01:36:19 AM »


1. Port Triggering for secure Torrent downloads as a plug-in that only loads when actually used:: http://www.portforward.com/help/porttriggering.htm
2. WhoIs service available on a right-click menu for the Firewall Logs entries.  (Script to open the WhoIs web page and paste the IP address into their data box).

3. More information accessible for applications that appear in the pop-up alerts.  File version, installation date, author/company, icon, digitally signed?, parent or startup source.

4. Quarantine for unknown files to permit scanning with an AV AS program.  Configurable "Send To" function to perform AV AS scans. 
Logged

What do you mean, my shoes are on the wrong feet???  These are the only feet I've got!
weaker
Comodo's Hero
*****
Offline Offline

Posts: 311


« Reply #2 on: November 24, 2007, 02:47:20 AM »

I want four different buttons in the pop-up instead of that "Remember..." checkbox
- Allow (once)
- Allow always

- Block (once)
- Block always

So every decision I make only costs one klick which keeps the pop-up so inobtrusive as possible. Average Joe doesn't want to click a single time more than needed and in this case I don't want to do that either.  Thinking
Logged
gibran
Forum Member
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3451


Sometimes words are meaningless indeed...


« Reply #3 on: November 24, 2007, 04:49:13 AM »

Hallo,

Comodo has a very active Forum Community and V3 specifically suggest this Forum to ask for Support.

So in order to further improve support requests and troubleshooting V3 should have a Ruleset and Configuration Report.

This way Members don't have to post screenshots and export Logs.

There should be only one place to go to generate a full textual report that list all the rules in a textual or HTML format.
This will shorten mostly all support Topics and will reduce the need to ask for missing or incomplete infos.

It would be easier to post a report containing something like

Quote from: Iexplorer Firewall ruleset
iexplore.exe
ALLOW TCP OUT from IP any to IP any where source PORT is any destination port is 80
ALLOW UDP OUT from IP any to IP any where source PORT is any destination port is 53
BLOCK IP IN/OUT from IP any to IP any


Quote from: Iexplorer D+ruleset
iexplore.exe
DNS client Service ALLOW
Loopback Networking ALLOW
Disk ALLOW
Keyboard ALLOW
Computer Monitor ALLOW
Protected Files and Folders ASK
Protected Files and Folder Allowed List:
   C:\windows\temp\*
Protected Files and Folder Blocked List:
   C:\windows\system32\*

instead of attaching screenshots or writing a ruleset by hand.

Another way to improve support would be the ability to import a textual rule in an application. So if a member doesn't know how
to use the configuration dialogs it will possible to import another member generated ruleset for that app.

I guess that D+ Diagnostic can export its report too or provide a more detailed one in order to troubleshoot ceratin incompatibilities and issues.
« Last Edit: November 24, 2007, 04:51:02 AM by gibran » Logged

gibran
Forum Member
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3451


Sometimes words are meaningless indeed...


« Reply #4 on: November 24, 2007, 04:52:09 AM »

Hallo,

V3 firewall alerts mimick thesame V2 details.
Anyway the current dialog implementation can be confusing.

I would like to suggest that V3 alert details should match V3 Firewall alert level or the user may be mislead.

Plus there should be an option to decrease the level of details a generated rule should have if the alert leve permit it.

So if an user has set a very high alert level  clicking Allow generate the usual detailed rule.
But using dropdown enabled buttons, if the user click on the down arrow part of the buttons there should be a menu listing all the other alternatives for lower alert level settings. This will add much more flexibility.

So a very high alert level dialog can create default rules with protocol ports IPs and in/out details but there will be a chance to generate less detailed rules using ANY. 

A very high alert dialog should have Five alternate rules (including the default one) an high alert dialog should have four alternate rules and so on.
Logged

gibran
Forum Member
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3451


Sometimes words are meaningless indeed...


« Reply #5 on: November 24, 2007, 04:53:40 AM »

Defense+ * policy is a huge improvement to acknowledge the need of few users which would like a less noisy HIPS.

as I tested this new setting to harden my security I found few features I needed (please if it was not intended don't remove it)

I can override trusted/installer poilicies and I can enforce protection even if CFP gui is closed.
I've not tested this extensively but I hope I'll be able to protect only few critical places at bootup too (a way to log V3 actions during bootup would be a nice addition)

It would be nice to have a * policy to handle bootup or host protection when V3 is closed.
Another addition would be the ability to finetune the installer policy to log all the changes and an option to add some conditional ask permissions (defaut to ask nothing, this way there will be no issues because ask is much like allow, but it will be possible to create an alternate protection ask setting)

A not operation would be useful too to archieve something like NOT in this path or NOT in this registry branch.
Logged

Timo Schmidt
Newbie
*
Offline Offline

Posts: 22


« Reply #6 on: November 24, 2007, 05:58:25 AM »

A consistent "Summary" User-Interface Smiley


Hi there!

I just replaced Comodo 2.4 with the 3.0 version. The new features are superb and the lower consumption of ressources compared to 2.4 is a very nice thing too Smiley

But there are a few inconsistenies in the User Interface:

For example in "Summary" there are the following lines:


Network Defense

The Firewall has blocked 234 intrusion attempt(s) so far
The Firewall security level is set to Train with Save Mode

0 inbound connection(s)
0 outbound connection(s)


Why I'm only able to access the Firewall security level from this "summary"-page? When I see that there are 234 intrusion attempts I'd like to see those attempts without having to click through various menues. The same for inbound and outbound connections.

The correct description of this part of "Summary" should be (underlined = link)

Network Defense

The Firewall has blocked 234 intrusion attempt(s) so far
The Firewall security level is set to Train with Save Mode

0 inbound connection(s)
0 outbound connection(s)




There are other cases like in "Proactive Defense" which should be fixed soon to ensure an easy and fast access to points which require attention Smiley


Greetings and continue the good work Smiley


Timo
Logged
Seal8
Newbie
*
Offline Offline

Posts: 4


« Reply #7 on: November 24, 2007, 07:29:27 AM »

I've noticed that when I setup my password for Comodo V3 it requires me to type in the password for each and every link (category) listed in Comodo V3 configuration.  Can't you set it up that once you have signed in and typed in your password in the configuration categories that you should only have to do this one time per session.  Not each and every time you click on a category.
Thanks for your consideration.
Logged
gaby
Guest
« Reply #8 on: November 24, 2007, 10:18:01 AM »

CPF 3.0.13.268.x32 XPpro SP2, up-to-date, Intel P4

Hi all,

Have to mention from the beginning that I'm very happy with ALL CPF v.3 behavior so far.
Thank you again for another great product!
1.
I have wished "a long time-ago"  Cheesy and I still do, that my FW will warn me in the event of an attack attempt – port-scan, DDoS.... with an optional pop-up, color change, anything ...
I was running various FW tests out-there, GRC and similar, and none generated any logs.
Because I'm behind a PPPoE connection, I cannot use the check “and log” option in my last Network Global Rule:
"Block IP In Any Any...", otherwise the FW log becomes a traffic sniffer, logging all WAN activity.
Therefore, if something will eventually go wrong, I'll find out about it after it happened.
2.
Another feature nice to see, probably already mentioned before, would be the possibility to import, in a sub-category of “Blocked Net Zones”, databases in Peerguardian or similar formats, from disk or URL's when running p2p's. No clue how performance/ behavior can be affected by a 200k+ list of addresses or ranges.
3.
If FW rules, both application and network would automatically receive id's when created, it can be useful to see another column in logs, with the rule no. or id, generating that event. Can be handy for debugging and fine-tunning.
4.
I need to choose between separate configurations only for FW, not for also D+, like in a previous Beta.
Comodo Rocks
Gabi
Logged
yhancik
Newbie
*
Offline Offline

Posts: 2


« Reply #9 on: November 24, 2007, 01:32:26 PM »

Comodo would be perfect if on Firewall Alert it had a button similar to Kerio's Advanced Filter Rule.
(see this screenshot)

Basically it would allow to immediately create a custom rule from an alert pop-up, instead of going thourgh Firewall Tasks > Advanced > Network Security Policy.


For now i'm getting back to KPF, but this addition would finally make me switch Wink
« Last Edit: November 24, 2007, 01:36:24 PM by yhancik » Logged
LeoniAquila
Über Minimalist™ Defender of Resources Bloatware Fighter
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 3232


Diesel in my veins


« Reply #10 on: November 24, 2007, 02:17:04 PM »

Hi, in addition to the post above of Timo Schmidt, I'd like to add:

Option to customize the links on the Summary page! It would be great to have shortcuts of my own choice, e.g. to rapidly access my application rules or the logs (like Timo suggests).

Thanks Comodo,
LA
Logged

» User of Windows XP Home Edition SP3 on Acer Aspire
» Slave of COMODO Firewall Pro 3.0
Natori
Comodo Member
**
Offline Offline

Posts: 27


« Reply #11 on: November 24, 2007, 10:50:39 PM »

Firewall Rule add/support IP list function.

Firewall can monitor and detect listen port created,  after ask user how do you do.

Firewall->"active connections" can support display listen port. (System and svchost.exe)

Summary->Traffic realtime support, or support display current  speed. (Total:XXXX.XXKB/s)


You may refer to KPF/SKPF. (Kerio Personal Firewall)

I like KPF and CFP too. (not SKPF)
Now I like CFP high than KPF. But CFP design not 100% win KPF.

sorry for my bad english.
« Last Edit: November 24, 2007, 11:02:48 PM by Natori » Logged
Eduardo
Computer Security Testing Group
Comodo Family Member
*****
Offline Offline

Posts: 53


« Reply #12 on: November 24, 2007, 11:27:23 PM »

+1!

Until you close the GUI, CFP shouldn't ask for password again.
Logged

Windows XP Pro SP2 x32 / AMD Sempron x64, 2600+, 1.60 GHz, 512 MB RAM, 80 GB HD

Avira AntiVir 7.06.00.78 PE Classic / Spyware Terminator 2.1.1.314 / COMODO BOClean Anti-Malware 4.25 / COMODO Memory Firewall 2.0.4.20 / COMODO Firewall Pro 3.0.21.329
Seal8
Newbie
*
Offline Offline

Posts: 4


« Reply #13 on: November 25, 2007, 06:21:43 AM »

Yes it would be nice if the password worked the way u suggest but it doesn't on my Comodo v3.  It asks for a password on every single click on a different category config.
Logged
JolietJake
Comodo's Hero
*****
Offline Offline

Posts: 237



« Reply #14 on: November 25, 2007, 06:53:10 AM »

I'm voting for this!! Cheers
Logged
Tags:
Pages: [1] 2 3 ... 38 Go Up Print 
« previous next »
Jump to:  

SSL Firewall
Page created in 0.477 seconds with 20 queries.
Powered by SMF 1.1.5 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com