Author Topic: CFP 3.0.11.246 RC1 64 Bit Bugreports  (Read 7207 times)

Offline gibran

  • Average User
  • Comodo's Hero
  • *****
  • Posts: 5056
  • A bad workman always blames his tools
CFP 3.0.11.246 RC1 64 Bit Bugreports
« on: November 08, 2007, 07:51:28 AM »
In order to provide enough informations to fix bugs please include those infos in your posts
Please submit one bug per post and change the subject to describe your post.

1. Computer information
2. Operating System information
3. Actively-running security and utility applications
4. Specific symptoms of the bug, and steps you can take to reproduce it.
5. Specific steps you have taken to try to resolve it.
6. If you pc reboots or you have a BSOD read How submit a BSOD bugreport for additional requirements.
« Last Edit: November 08, 2007, 08:11:22 AM by gibran »
"In the beginning the Universe was created. This has made a lot of people very angry and has been widely regarded as a bad move."- Douglas Adams

Offline massis

  • Newbie
  • *
  • Posts: 2
Re: CFP 3.0.11.246 RC1 64 Bit Bugreports
« Reply #1 on: November 08, 2007, 02:48:17 PM »
Hi, I'm using Vista Ultimate x64 on Intel Quad q6600 with 4GB RAM

Two issues so far:
1. It seems that cfp is blocking responses from web servers (See attachment) and thus slowing down web browsing. I fixed it by creating a rule for the WebBrowser policy to allow any incoming connection and now the log is empty. Any clues?

2. Somehow cfp crashed when I clicked on a warning dialog and there was another one beneath it which also received the click

Other than that everything is fine.
Ah, yes, great work on the initial configuration wizard. It is very clear and informative. Congratulations!

 (B)

Best regards

[attachment deleted by admin]

Offline djbronko

  • Newbie
  • *
  • Posts: 19
ICMP code and type are not logged
« Reply #2 on: November 08, 2007, 02:56:14 PM »
The following bug was not fixed yet: ICMP code and type are not logged.

That means that there is no way to verify whether the ICMP rules work.

See my earlier posts for details.

1. Computer information: AMD Athlon 64 X2
2. Operating System information: Windows XP Pro x64
3. Actively-running security and utility applications: CFP, Avira Antivir PE Classic 7.06.00.270
4. Specific symptoms of the bug, and steps you can take to reproduce it: see the URL above
5. Specific steps you have taken to try to resolve it: see the URL above

Offline dn3

  • Newbie
  • *
  • Posts: 2
Re: CFP 3.0.11.246 RC1 64 Bit Bugreports
« Reply #3 on: November 08, 2007, 05:26:50 PM »
Vista 64bit, Intel Q6600, 4GB RAM.

Hi :)

If I activate both Defense+ and "Block all the unknown requests if the application is closed" right after installing it without having Defense+ activated, it won't start Windows properly after reboot.
I guess, it''s because there are no allowed applications yet at the "Computer Security Policy", but I think at least this could have been warned, because I had to go to Vista Safe Mode to get back to normal Windows (there I unchecked the mentioned "Block" option).
It would be better, if the "core loading vista routines" wouldn't be blocked then. I hope I didn't misunderstand this option.

Thanks  (:WAV)

Offline ~Daniel~

  • I used to be indecisive, but now I'm not so sure.
  • Global Moderator
  • Comodo's Hero
  • *****
  • Posts: 906
Re: CFP 3.0.11.246 RC1 64 Bit Bugreports
« Reply #4 on: November 10, 2007, 12:50:53 AM »
WinXP x64, E6600 C2D, 4DG DDR2... aVast 4.7 HE

1) My Pending Files was listed to have over 400 files after rebooting on install... yet opening the list showed empty... after some time, the list reduced to 1, retried opening it and saw the one file

What originally drew my attention to this was when i was playing with the slider for Defense+.  Once changed to Clean PC mode, it asked about "if i was sure, as there are 400+ files in Pending"... so i said no and went to go open the list, which was empty.

2) Firewall and Defense+ Events show no details... if I click MORE, then i see details

3) I clicked the file name in a Defense+ popup (to open the files properties) and a comodo "found a bug" popup was launched as the defense+ popup was closed.
« Last Edit: November 10, 2007, 12:52:44 AM by m0ng0d »
OS: Win 10 Enterprise x64 build 1809
Comodo: CIS 11.X (latest version)
Backup/Imaging: Macrium Reflect Home v7.X
Win10 Phone: N/A
Personal Website: Comodo SSL (via CloudFlare)

Offline ~Daniel~

  • I used to be indecisive, but now I'm not so sure.
  • Global Moderator
  • Comodo's Hero
  • *****
  • Posts: 906
Re: CFP 3.0.11.246 RC1 64 Bit Bugreports
« Reply #5 on: November 11, 2007, 01:25:50 PM »
2) Firewall and Defense+ Events show no details... if I click MORE, then i see details
This seemed to "correct itself" over time... maybe there was just a delay, but a few hours later when i reopened the log, I was seeing details right away.
OS: Win 10 Enterprise x64 build 1809
Comodo: CIS 11.X (latest version)
Backup/Imaging: Macrium Reflect Home v7.X
Win10 Phone: N/A
Personal Website: Comodo SSL (via CloudFlare)

Offline gibran

  • Average User
  • Comodo's Hero
  • *****
  • Posts: 5056
  • A bad workman always blames his tools
Re: ICMP code and type are not logged
« Reply #6 on: November 19, 2007, 09:19:26 AM »
The following bug was not fixed yet: ICMP code and type are not logged.

That means that there is no way to verify whether the ICMP rules work.

See my earlier posts for details.

1. Computer information: AMD Athlon 64 X2
2. Operating System information: Windows XP Pro x64
3. Actively-running security and utility applications: CFP, Avira Antivir PE Classic 7.06.00.270
4. Specific symptoms of the bug, and steps you can take to reproduce it: see the URL above
5. Specific steps you have taken to try to resolve it: see the URL above


ICMP are now logged ;D Maybe before too :o

Copy the log file on your desktop and open it with sqlitespy  http://www.yunqa.de/delphi/doku.php/products/sqlitespy/index
"In the beginning the Universe was created. This has made a lot of people very angry and has been widely regarded as a bad move."- Douglas Adams

Offline djbronko

  • Newbie
  • *
  • Posts: 19
Re: CFP 3.0.11.246 RC1 64 Bit Bugreports
« Reply #7 on: November 20, 2007, 01:33:14 AM »
Thanks for your hint to the DB viewer.

Unfortunately, all values except the process name are stored as numbers and have to be converted before they become readable. IP addresses are of type DOUBLE, e.g. '50440384.0'. Port values are translated somehow, e.g. '20480' for port 80. How can I get the correct values?

BTW, reading implementation-dependent values from the log database directly is not very convenient for a user. Is it a big deal to add the correct values of ICMP code/type fields to the log viewer, the same way as it is already done for UDP/TCP port values?

Offline gibran

  • Average User
  • Comodo's Hero
  • *****
  • Posts: 5056
  • A bad workman always blames his tools
Re: CFP 3.0.11.246 RC1 64 Bit Bugreports
« Reply #8 on: November 20, 2007, 02:41:03 AM »
Thanks for your hint to the DB viewer.

Unfortunately, all values except the process name are stored as numbers and have to be converted before they become readable. IP addresses are of type DOUBLE, e.g. '50440384.0'. Port values are translated somehow, e.g. '20480' for port 80. How can I get the correct values?

BTW, reading implementation-dependent values from the log database directly is not very convenient for a user. Is it a big deal to add the correct values of ICMP code/type fields to the log viewer, the same way as it is already done for UDP/TCP port values?

Yep those 20480 are strange indeed as not every port should be duvuded by 256. Anyway the final will surely show ICMP codes in the log viewer.
And I guess at least correct that 20480 issue as well :P Maybe changing those double values to integer will save some space too.

INTEGER. The value is a signed integer, stored in 1, 2, 3, 4, 6, or 8 bytes depending on the magnitude of the value.
REAL. The value is a floating point value, stored as an 8-byte IEEE floating point number.
"In the beginning the Universe was created. This has made a lot of people very angry and has been widely regarded as a bad move."- Douglas Adams

Offline djbronko

  • Newbie
  • *
  • Posts: 19
Re: CFP 3.0.11.246 RC1 64 Bit Bugreports
« Reply #9 on: November 20, 2007, 01:57:48 PM »
Quote
Anyway the final will surely show ICMP codes in the log viewer.

That's all I wanted to hear.  :BNC

 

Free Endpoint Protection
Seo4Smf 2.0 © SmfMod.Com Smf Destek