Welcome to the Comodo Forum
Welcome,
Guest
. Please
login
or
register
.
Did you miss your
activation email?
May 25, 2013, 04:11:31 PM
1 Hour
1 Day
1 Week
1 Month
Forever
Login with username, password and session length
664076
Posts
70634
Topics
145265
Members
Latest Member:
sharf224
more news...
Search:
Advanced search
|
Tag Cloud
Welcome to the Comodo Forum
Learn about Computer Security and Interact with Security Experts
Leak Testing/Attacks/Vulnerability Research
VPN + Comodo = non-stealth ports 22, 80 and 443 (as per GRC Shields-Up!)
« previous
next »
Pages:
[
1
]
Author
Topic: VPN + Comodo = non-stealth ports 22, 80 and 443 (as per GRC Shields-Up!) (Read 33942 times)
port_stealth
Newbie
Offline
Posts: 1
VPN + Comodo = non-stealth ports 22, 80 and 443 (as per GRC Shields-Up!)
«
on:
February 23, 2012, 02:20:12 AM »
is this post in the wrong forum category? well over 300 people have read it, yet no one has replied. please tell me if i'm doing anything wrong here - thanks
i use a VPN service with many servers in many countries. the only times that stealth for ports 22, 80 and 443 is achieved are right after i install a new firewall (no IP changes yet?) or when i turn off the OpenVPN service. when my IP changes i've tried selecting "I am home" or "I am at work" or "I'm in public" but stealth status remains elusive. i have gone to "Stealth Ports Wizard" and tried "Define trusted network and make my ports stealth..." (with various choices for "trusted zones" such as "loopback" or "home #1", or the beginning IP and subnet mask provided by ipconfig). i've also tried "Block all my ports and make them stealth for everyone." which worked no better. i didn't want to deal with incoming traffic by hand all of the time so i haven't tried the third option.
is there anything i can do about this?
specifics:
dell inspiron laptop
windows 7 home premium sp1 64 bit
comodo 5.9.221 (new free version)
thanks
«
Last Edit: February 24, 2012, 09:55:00 PM by port_stealth
»
Logged
jay2007tech
Malware Research Group
Global Moderator
Comodo's Hero
Offline
Posts: 1795
Re: VPN + Comodo = non-stealth ports 22, 80 and 443 (as per GRC Shields-Up!)
«
Reply #1 on:
March 12, 2012, 04:30:45 AM »
Here's the thing,
Port 443 Comodo VPN uses this
Port 80 is what browsers use to surf the net <---You were able to surf the net and go to grc.com so you know port 80 is open
Port 22 I think that has something to do with "ssh"
I hope this explains why that is
Logged
It's hard being a crooked Admin when the files won't pass an md5checksum test. But like any other good crooked Admin it can be done, it just takes time(and lots of it) and a few aspirins
ailef
Computer Security Testing Group
Comodo's Hero
Offline
Posts: 832
Re: VPN + Comodo = non-stealth ports 22, 80 and 443 (as per GRC Shields-Up!)
«
Reply #2 on:
March 27, 2012, 10:30:06 AM »
yes port is open but it should not be able to create an incoming connexion if comodo is installed. except if comodo is configured for the browser as trusted application.
so does the test says that it's just a port open or is it able to connect to the port ? normaly for any trafic, comodo is warning, custom mode and alerts to the max.
about the VPN, if you have no NAT firewall coming with it, the incoming requests will not be stopped.
i got a VPN service with the nat firewall option and it's blocking almost any incoming trafic. comodo is blocking like 10 intrusions a day.
when i use the other vpn that has no nat firewall, comodo is blocking like thousand intrusions a day.
I think that your comodo FW was not configured to stop and alert about all network activities.
Custom mode and alerts to the max, delete all the firewall rules and there are not a lot of softwares that need to be trusted application.
i just watched and i got no application set as trusted. but as i use kasper AV, this one controls all the traffic and each application comodo stops is always a tcp out 127.0.0.1 port 1110.
the only incoming is the VPN on port 4500.
I don't know if i'm 100% safe, but i think that the only way to connect to me is by breaking the certificate or a nasty talk with my port 443, when it's crypted, the AV is blind, kav has a certificate to scan encrypted connexions but it's very annoying as it's not working with all websites like the bank and impossible to run windows update. (on win7, because it used to work on XP).
so if you can add the service nat firewall on your VPN, It's working very good, 1000 intrusions a day without and 10 with , according to comodo FW that counts the number of intrusions on the summary tab.
but if u need an incoming to share things, a vpn with a firewall can be a problem. it's not possible to manage the nat firewall service, that's sad, but i don't think it's possible. each client connect to the servers trying to create a rule on an OS probably linux based. it's not very hard when u know the command, but it's far from configuring an ISP router or the comodo FW. even about that, if people are not interested a lot about PCs, it's chinese.
about VPN, is it hard to configure one for home ? do i need a certificate or a key is as safe ?
i think a certificate is a good choice, but when i have to enter the password during the configuration, it's so simple, so is it important or it doesnt matter as it's a RSA 4096 key in the certificate in L2TP/IPsec protocol encrypted in AES 256bit. what's the password do in that, when you import the certif, in the windows console, you have to enter a stupid password, i wonder the utility and if it's a security issue.
they anyway need my log and password also, but you take a vpn at openVPN for exemple and you DL the certif and the pass is openvpn... is it not stupid or i'm too paranoid, and as i'm not a network master, i don't know if to put a poor password there when you install the certif is a potential security issue ?
sorry for the so long post ! I need a slap for flooding, i start and i add too many things instead of asking if the problem is solved and how ;-)
Logged
Windows 7 ultimate 64-bit SP1 - Comodo Firewall & Defense+ 5.10.228257.2253 - Antivirus ? It's unable to bring any serious protection so I gave up with AVs.
jay2007tech
Malware Research Group
Global Moderator
Comodo's Hero
Offline
Posts: 1795
Re: VPN + Comodo = non-stealth ports 22, 80 and 443 (as per GRC Shields-Up!)
«
Reply #3 on:
March 31, 2012, 01:12:22 PM »
Damm, that's a big post. I try to answer part of it (Gotta start somewhere, right)
For you, As for stuff coming and going through the firewall and your router. I know that you know you can configure rules for the router and/or firewall. (At home, I configure both)
I guess the best why to configure something is to understand how some software products (like "skype" tried to bypass routers and firewalls) Once you understand that, you can create better and more efficient rules instead of writing a bunch of rules (but, what fun is that right
)
This site can explain better then I could ever try to explain so here it is, If you can understand this, you can write better rules
http://www.h-online.com/security/features/How-Skype-Co-get-round-firewalls-747314.html
Logged
It's hard being a crooked Admin when the files won't pass an md5checksum test. But like any other good crooked Admin it can be done, it just takes time(and lots of it) and a few aspirins
ailef
Computer Security Testing Group
Comodo's Hero
Offline
Posts: 832
Re: VPN + Comodo = non-stealth ports 22, 80 and 443 (as per GRC Shields-Up!)
«
Reply #4 on:
April 15, 2012, 09:37:18 PM »
thanks for those informations, i'm trying to get the exact meaning of the article but my english is not good enough, there are some technical terms that I miss, I need to work the translation to be sure of what i think i understand is really what the person explained.
Logged
Windows 7 ultimate 64-bit SP1 - Comodo Firewall & Defense+ 5.10.228257.2253 - Antivirus ? It's unable to bring any serious protection so I gave up with AVs.
Tags:
Pages:
[
1
]
« previous
next »
Jump to:
Please select a destination:
-----------------------------
General Category
-----------------------------
=> Melih's Corner - CEO Talk/Discussions/Blog
=> Comodo.TV - Our Internet Video Channel
===> Comodo.TV - News and Announcements
===> Comodo.TV - Program Lineup
===> Audience Feedback and Suggestions
=> Which Product do you want Comodo to develop next?
=> How Can I Help Comodo? (Please We Need You!)
===> Report Comodo Forum / Web Site Issues
===> Please Tell Us Your Views and Vote Here!
===> Help Spread the Word - Banners and Logos
=> General Discussion (off topic) Anything and everything...
===> Member Confessions :-)
===> Funny Photos :-)
===> Cool Stuff
-----------------------------
Security Products & Services
-----------------------------
=> Comodo Internet Security - CIS
===> News / Announcements / Feedback - CIS
=====> Wishlist - CIS
===> Help - CIS
=====> Guides - CIS
=====> AntiVirus Help - CIS
=======> AntiVirus FAQ - CIS
=====> Firewall Help - CIS
=======> Firewall FAQ - CIS
=====> Defense+ / Sandbox Help - CIS
=======> Defense+ / Sandbox FAQ - CIS
=====> Install / Setup / Configuration Help - CIS
=======> Install / Setup / Configuration FAQ - CIS
===> Bug Reports - CIS
===> AV False Positive/Negative Detection Reporting
=> Comodo Cleaning Essentials + KillSwitch & Autoruns - CCE
===> News / Announcements / Feedback - CCE
=====> Wishlist - CCE
===> Help - CCE
===> Bug Reports - CCE
=> Comodo Antivirus for Mac OS X - CAVM
=> Comodo Antivirus for Linux - CAVL
=> Comodo Mobile Security - CMS
=> Comodo Time Machine - CTM
===> News / Announcements / Feedback - CTM
===> Help - CTM
=====> FAQ - CTM
===> Bug Reports - CTM
=> Comodo Dragon - CD
===> News / Announcements / Feedback - CD
=====> Wishlist - CD
===> Help - CD
=====> FAQ - CD
===> Bug Reports - CD
=> COMODO IceDragon - CID
===> News / Announcements / Feedback – CID
=====> Wishlist - CID
===> Help – CID
===> Bug Reports - CID
===> Beta Corner – CID
=> Comodo LoginPRO
=> Comodo Disk Encryption - CDE
===> News / Announcements / Feedback - CDE
=====> Wishlist - CDE
===> Help - CDE
=====> FAQ - CDE
===> Bug Reports - CDE
=> Comodo Secure DNS - DNS
===> News / Announcements / Feedback - DNS
===> Help - DNS
=> Comodo Unite (EasyVPN) - CUnite
===> News / Announcements / Feedback - CUnite
===> Help - CUnite
=====> FAQ - CUnite
===> Bug reports - CUnite
=> Comodo TrustConnect - CTC
=> Comodo SiteInspector - CSI
=> Comodo Valkyrie - FLS
=> Comodo Instant Malware Analysis Online - CIMA
=> Comodo Rescue Disk - CRD
-----------------------------
Desktop Utilities & Services
-----------------------------
=> Comodo System Utilities - CSU
===> News / Announcements / Feedback - CSU
===> Help - CSU
=====> FAQ - CSU
===> Wishlist - CSU
=> Comodo Backup - CB
===> News / Announcements / Feedback - CB
===> Comodo Cloud
===> Help - CB
=====> FAQ - CB
===> Wishlist - CB
=> Comodo Programs Manager - CPM
===> News / Announcements / Feedback – CPM
===> Help - CPM
===> Wishlist - CPM
=> GeekBuddy & Live PC Support
=> GeekBuddy PC Health Check - PCHC
===> News/ Announcements / Feedback – PCHC
===> Help - PCHC
-----------------------------
Business / Enterprise Security Products & Services
-----------------------------
=> Digital Certificates
===> Code Signing Certificate
===> Content Verification Certificate
===> Email Certificate
===> SSL Certificate
=> PCI DSS Compliance
=> Comodo Endpoint Security Manager
===> Endpoint Security Manager 1.6
===> Endpoint Security Manager 2.0 Business Edition
===> Endpoint Security Manager 2.1
===> Endpoint Security Manager 3.0
=====> CESM 3.0 Beta
===> ESM Console for Windows Phone
===> Earlier versions of CESM
=> Two Factor Authentication for Web Applications
=> Trustlogo
=> Hacker Guardian
=> Comodo Network Center - CNC
=> Comodo AntiSpam Gateway - Hosted Anti Spam Service
-----------------------------
Learn about Computer Security and Interact with Security Experts
-----------------------------
=> General Security Questions and Comments
=> Virus/Malware Removal Assistance
=> Leak Testing/Attacks/Vulnerability Research
=> Digital Certificates, Encryption and Digital Signing
=> Other Security Products
-----------------------------
International Comodo Forums
-----------------------------
=> International Comodo Forums
===> 汉语语言, 漢語語言 / Chinese Simplified, Traditional
===> Česky / Czech
===> Dansk / Danish
===> Nederlands / Dutch
===> Suomi / Finnish
===> Francais / French
===> Deutsch / German
===> ελληνικά / Greek
===> Magyar / Hungarian
===> Italiano / Italian
===> Nihongo / Japanese
===> Norsk / Norwegian
===> Polski / Polish
===> Português/Portuguese
===> Română / Romanian
===> По-русски / Russian
=====> News & FAQ
=====> Оффтоп (OFFTOP)
=====> Архив / Archive
===> Slovenský / Slovak
===> Slovenščina / Slovenian
===> Espanol / Spanish
===> Svenska / Swedish
===> Turkce / Turkish
===> Українська / Ukrainian
===> Việt / Vietnamese
===> Estonian
===> Arabic
-----------------------------
Archived Boards
-----------------------------
=> Discontinued Products
===> Comodo Web Application Firewall - CWAF
===> Comodo HopSurf - CHS
===> Comodo AntiSpam - CAS
=====> Help - CAS
=======> FAQ - CAS
=====> News / Announcements / Feedback - CAS
=======> Wishlist - CAS
=====> Bug Reports - CAS
===> Verification Engine - CVE
===> Comodo Secure Email - CSE
=====> News / Announcements / Feedback - CSE
=====> Help - CSE
=======> FAQ - CSE
=====> Bug Reports - CSE
===> Comodo Cloud Scanner - CCS
=====> News / Announcements / Feedback - CCS
=====> FAQ - CCS
=====> Beta Corner - CCS
=====> Wishlist - CCS
===> Comodo Anti-Viruspyware (CAVS)
=====> Help for Comodo AntiVirus
=====> FAQ for Comodo Anti-ViruSpyware
=====> Feedback/Comments/Announcements/News about CAVS
=====> CAVS BETA Corner
=====> Announcements
=====> Comodo BOClean Anti-Malware FAQ
===> Comodo Diskshield
===> Comodo Firewall
=====> Feedback/Comments/Announcements/News
=====> Help for v3
=====> Help for v2
=====> Frequently Asked Questions (FAQ) for Comodo firewall
=====> CFP BETA Corner
=======> 32 bit bug reports
=======> 64 bit bug reports
=====> Comodo Firewall Translations
=====> Bug Reports
===> i-Vault
===> Launch Pad (Discontinued)
===> Comodo Meet (Web Conferencing Product) (Discontinued)
===> Comodo Memory Firewall(Buffer Overflow Protection)
=====> Comodo Memory Firewall Beta Corner
=====> Help
=====> Frequently Asked Questions (Comodo Memory Firewall)
=====> Feedback/Comments/Announcements/News
===> Safesurf
===> Trusttoolbar (Discontinued)
===> Trustfax (online faxing)
===> Trustix Enterprise Firewall
===> User Anywhere (Remote Access product) (Discontinued)
===> UserTrust - First Independent Website Rating - Empowering our users!
===> Comodo Vulnerability Analyzer - CVA
===> ZTL
=> Comodo Wiki Project
Page created in 0.036 seconds with 20 queries.
Powered by SMF 1.1.18
|
SMF © 2006, Simple Machines
Design by
7dana.com