Welcome, Guest. Please login or register.
July 24, 2008, 06:48:16 AM

Login with username, password and session length

176642 Posts
20890 Topics
50678 Members

Latest Member: phoenix910

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Desktop Security Products
| |-+  Comodo Firewall
| | |-+  Frequently Asked Questions (FAQ) for Comodo firewall
| | | |-+  How To - Understanding & Creating Network Control Rules properly
« previous next »
Pages: 1 ... 9 10 [11] Go Down Print
Author Topic: How To - Understanding & Creating Network Control Rules properly  (Read 76728 times)
xarienne
Newbie
*
Offline Offline

Posts: 12


« Reply #150 on: February 20, 2008, 03:21:38 PM »


Hi There,

You all were very kind back in December in helping me make sure my NetCon rules were correct/secure.

But, alas, last week that particular computer decided its time with this world was done and, since my new computer has Vista, I've recently upgraded to CFPv3.

I've done the best I can with setting up my Application and Global Rules (based on what I'd had in v2.4), but must admit to some confusion with the new "Network Security Policy" area.

At this point, this is what I've ended up with (attached).

Could someone take a look through and let me know if there are any suggested changes I should make?

Many thanks, xari.


Logged
panic
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5155


... and I say to myself, "What a wonderful world"


« Reply #151 on: February 21, 2008, 05:45:18 AM »

Looks good. Nice compact set of global network rules. I'd double check whether Windows Sidebar really needs outbound access, though.
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
xarienne
Newbie
*
Offline Offline

Posts: 12


« Reply #152 on: February 21, 2008, 08:00:33 AM »

Looks good. Nice compact set of global network rules. I'd double check whether Windows Sidebar really needs outbound access, though.


Will do. Thanks so much!  --xari.

[And I like your sig!]
Logged
BuzzandWoody69
Newbie
*
Offline Offline

Posts: 6


« Reply #153 on: April 15, 2008, 03:35:39 PM »

Hi, first off can I say m0ng0d great post!  Its helping, me understand a lot.
Can I ask which verison you are currently using and why?

I'm new to Comodo and I'm still finding me way through "my new firewall world2!!!  Thumb Up
It would be very helpful tho, if you could update your post with a new guide for us newbie's for the latest verison!

Thanks again! Cheers
Logged
Josh123
Guest
« Reply #154 on: April 16, 2008, 11:15:55 PM »

Hi, first off can I say m0ng0d great post!  Its helping, me understand a lot.
Can I ask which verison you are currently using and why?

I'm new to Comodo and I'm still finding me way through "my new firewall world2!!!  Thumb Up
It would be very helpful tho, if you could update your post with a new guide for us newbie's for the latest verison!

Thanks again! Cheers

Hi BuzzandWoody69 & Welcome to the Forums!  Smiley

The latest version can be found here

Version 3.0.21.329 is currently the latest. Release notes can be found here

Josh
Logged
BuzzandWoody69
Newbie
*
Offline Offline

Posts: 6


« Reply #155 on: April 17, 2008, 03:50:32 AM »

Thanks for your reply Josh! Wink
Logged
m0ng0d
I used to be indecisive, but now I'm not so sure.
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 779



« Reply #156 on: April 17, 2008, 09:18:43 PM »

wow... almost 2 years later and this post is still helpful  Angel  That is just awesome!

It just doesn't seem all that long ago that I spent 4-5 hours laying out, building, and tweaking this guide until I was happy with it... but when the lights came on when I finally "got it", I just had to write it down... I think the hardest part was looking past all the formatting code while I was writing/re-reading it... if you think the final output is long... you should see the complete code behind it...
 Wink

I must confess though, I am still amazed that it receives less hits than pandlouk's Emule and bittorent tuttorials Tongue
Logged



OS: WinXP x64
Comodo Security: CFP 3.0.21.329
Other Security: aVast 4.8 HE, Mailwasher Pro 5.3 LFE
Wish: x64 iVault for FireFox, x64 CAVS, x64 Comodo Backup
panic
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5155


... and I say to myself, "What a wonderful world"


« Reply #157 on: April 17, 2008, 09:25:23 PM »

Quality, unlike you or I, doesn't age.  Smiley
Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
eldoctor
Newbie
*
Offline Offline

Posts: 2


« Reply #158 on: May 12, 2008, 05:54:41 AM »

Hello...

Hope it is the right place to post my question.

I was happy to find a free firewall that I could use on vista x64. Smiley

Anyway, there must be something I don't get :

I am using Comodo Firewall 3.0.22.439, in custom policy mode.
I have a local network : 192.168.0.12/255.255.255.0 (my comodo computer is 12).

In network security policy, I have one global rule :
"Allow All Incoming Requests If The Sender Is  In [Local Area Network #1]". Local Area Network #1 is 192.168.0.12/255.255.255.0.

When 192.168.0.11 starts a vnc connexion to 192.168.0.12, Comodo FW on 192.168.0.12 tries to learn application behaviour (incoming) for winvnc4.exe.
I would have thought that my global rule would have covered this case...

Anything I got wrong?


Thanks!
Logged
panic
Global Moderator
Comodo's Hero
*****
Offline Offline

Posts: 5155


... and I say to myself, "What a wonderful world"


« Reply #159 on: May 12, 2008, 06:47:32 AM »

G'day and welcome to the forums.

What is happening on your system is actually what is supposed to happen.

The network security policies determine HOW something can get in or out.
The application rules determine WHAT can get out. 

Your global rule covers the fact that a port needs to be opened. The application side of things is monitoring what application is using that opened port. If no application is running, CFP will stelath the port, even if you have a rule that says it is needed.

Think of this as "adaptive stealthing".

Hope this helps,
Ewen :-)


Logged

As your mums would say, "If you can't play nice with all the other kiddies, go home".
All users are asked to please read and abide by the  Comodo Forum Policy.
If you don't like it, don't use the forum.
eldoctor
Newbie
*
Offline Offline

Posts: 2


« Reply #160 on: May 12, 2008, 08:03:55 AM »

Well... Not easy...

Anyway, with your help and the online help also (should have looked there first Wink ), I think I will manage it... Smiley
« Last Edit: May 12, 2008, 08:12:26 AM by eldoctor » Logged
Tags:
Pages: 1 ... 9 10 [11] Go Up Print 
« previous next »
Jump to:  

SSL Firewall
Page created in 0.133 seconds with 19 queries.
Powered by SMF 1.1.5 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com