Welcome, Guest. Please login or register.
March 21, 2010, 10:57:24 PM

Login with username, password and session length

373586 Posts
41456 Topics
94202 Members

Latest Member: rmanero

Search:     Advanced search | Tag Cloud
+  Welcome to the Comodo Forum
|-+  Archived Boards
| |-+  Discontinued Products
| | |-+  Comodo Firewall
| | | |-+  Help for v2
| | | | |-+  Open ports to allow P2P clients: The risks [RESOLVED]
« previous next »
Pages: [1] Go Down Print
Author Topic: Open ports to allow P2P clients: The risks [RESOLVED]  (Read 3178 times)
vespatian
Newbie
*
Offline Offline

Posts: 6


« on: August 12, 2006, 09:41:45 AM »

Hi all... Thanks for the great FAQ and help pages  Clapping

I have followed the FAQ and managed to sort out the NAT error when using Azureus with CPF. Really fast transfers now  Kewl

However, after scanning my ports with GRC 'Shields Up' I have noticed that the port I am using for Azureus is wide open on the internet, not just fo Azureus.

Is this a serious security risk? Is it not posible to only allow TCP/UDP connections from Azureus to this port? I am using one of the ports recommended by Azureus.

Would be nice if someone could clarify the risks to me and any possible solution Smiley Thanks!  Wink


 (J)

 
« Last Edit: August 13, 2006, 06:16:41 AM by panic » Logged
BullHorn
Comodo's Hero
*****
Offline Offline

Posts: 230


Nexus23


WWW
« Reply #1 on: August 12, 2006, 09:46:15 AM »

That's exactly what I did with mIRC so I could use DCC and I had the exact same question and problem but no answer.

The port is wide open, right? For all TCP/UDP incoming through port ####, it isn't only set to be allowed by mIRC.

I'd like to be enlightened. Smiley
Logged

Windows XP SP2
Comodo Personal Firewall 3.0.7.208
NOD32 2.7
vespatian
Newbie
*
Offline Offline

Posts: 6


« Reply #2 on: August 12, 2006, 10:12:30 AM »


Hey Bullhorn! Yup... Port is wide open for any connection... I opened peerguardian to see the log for 'allowed connections' and there were several connections coming in for that exact port with Azureus not even running!

No sign of worms or intrusions as such, but I dont like the idea of all these random connections :S
« Last Edit: August 12, 2006, 10:16:38 AM by vespatian » Logged
BullHorn
Comodo's Hero
*****
Offline Offline

Posts: 230


Nexus23


WWW
« Reply #3 on: August 12, 2006, 02:29:55 PM »

No answers yet...

Anyway, even if this IS a security issue, I'm sure it'll be easily fixed. Just add another box in that Network Monitor. Whenever you "add" a new allowed port, just choose target the application that you want to allow this port for.
Logged

Windows XP SP2
Comodo Personal Firewall 3.0.7.208
NOD32 2.7
egemen
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 2191



« Reply #4 on: August 12, 2006, 04:20:40 PM »

Hi all... Thanks for the great FAQ and help pages  Clapping

I have followed the FAQ and managed to sort out the NAT error when using Azureus with CPF. Really fast transfers now  Kewl

However, after scanning my ports with GRC 'Shields Up' I have noticed that the port I am using for Azureus is wide open on the internet, not just fo Azureus.

Is this a serious security risk? Is it not posible to only allow TCP/UDP connections from Azureus to this port? I am using one of the ports recommended by Azureus.

Would be nice if someone could clarify the risks to me and any possible solution Smiley Thanks!  Wink


 (J)

 

When you open the port, if an application listens on that port, it will be shown open. But if you close the listening application, it will be stealhted.

So the fact is "If Azerus is running and listening on the port you allowed in network rules, that port will be open. If Azerus is not listening, it wont be."

Have you opened all the ports? Let me see your network rules pls.


Egemen
Logged
BullHorn
Comodo's Hero
*****
Offline Offline

Posts: 230


Nexus23


WWW
« Reply #5 on: August 12, 2006, 04:23:35 PM »

Oh, now I get it.

All I gotta make sure is that I don't set a program to use a port that is used by some other oftenly-used Windows or similar important port, am I right?
Logged

Windows XP SP2
Comodo Personal Firewall 3.0.7.208
NOD32 2.7
vespatian
Newbie
*
Offline Offline

Posts: 6


« Reply #6 on: August 12, 2006, 05:30:50 PM »

When you open the port, if an application listens on that port, it will be shown open. But if you close the listening application, it will be stealhted.

So the fact is "If Azerus is running and listening on the port you allowed in network rules, that port will be open. If Azerus is not listening, it wont be."

Have you opened all the ports? Let me see your network rules pls.


Egemen

Thanks egemen!

Hmmmm... GRC saw that port 'open' even when Azureus was not running. As far as I know no other application uses that port... It is within the range suggested by Azureus (begins at 49152)

Network rule I set up other than the defaul ones:

TCP/UDP In (ALLOWED)
Source IP: Any
Remote IP: My computer's network IP
Source Port: Any
Remote Port: My Azureus Port
« Last Edit: August 12, 2006, 05:35:00 PM by vespatian » Logged
vespatian
Newbie
*
Offline Offline

Posts: 6


« Reply #7 on: August 12, 2006, 05:44:16 PM »

Hello again. You are absolutely right... When I shut down Azureus this time the specific port was stealthed.

My bad.


Thanks for help  Wink

 (L)
Logged
egemen
Administrator
Comodo's Hero
*****
Offline Offline

Posts: 2191



« Reply #8 on: August 13, 2006, 06:11:45 PM »

Oh, now I get it.

All I gotta make sure is that I don't set a program to use a port that is used by some other oftenly-used Windows or similar important port, am I right?

Yes. Windows usualy does not use any ports other than well-known ones like 445,139,80,1900. The ports used by p2p clients are usually some random ports and not shared by any other common services.

Egemen
Logged
Tags:
Pages: [1] Go Up Print 
« previous next »
Jump to:  

SSL Certificate Free Virus Removal Firewall
Page created in 0.047 seconds with 20 queries.
Powered by SMF 1.1.11 | SMF © 2006, Simple Machines LLC
Seo4Smf v0.2 © Webmaster's Talks
Design by 7dana.com