Firewall Tutorial for Utorrent with Comodo Internet Security

Hi warchief_ryan,

Please eliminate that rule from your global rules. With that one you give permanent access at that port on all applications.

Well you could run uttorent without a firewall and it would not have any problems. :slight_smile:

The rules that I made are based on the ports needed for utorrent to connect without problems. The ports that are not needed (Priviliged ports=1-1024) are taken out.

So I should skip that?

And follow your guide?

Feel free to use yours. :smiley:
I’m not trying to convince anyone.

p.s. Never use the global rules for opening ports!You leave that one port available to the outside for every program; not only utorrent.

Hey Pan, I’ve been re-arranging my rules (again) to use what you recommend for uTorrent and found in the log a lot blocked UDP outgoing to the destination port 53 entries from my IP to others. Is it ok to have these blocked because I understand it’s for DNS?

Yes, it is ok.

From the packet sniffers I saw that most are DNS requests; but some are not.

p.s. on my pc those adresses get banned at once. I cannot see why someone should use reservered ports for filesharing. 88)

Hmmmm…I just found that not adding this rule didn’t allow me to download from a particular torrent :o:
Allow UDP Out from Source Port [1025-65535] Destination Port [53]

I guess that you connect with a modem. that is a legittimate DNS request and you can allow it. Uttorent could not find the site.

If you are behind a router just configure your trusted zone.

Right. Only a modem without a router. BTW, can you explain why the 0-1024 are special ports and shouldn’t be used by uTorrent (or other programs ???).

And I don’t know why, but ever since I followed your rules (delete everything in Global Rules except the Block In ICMP Echo Request rule) there have been no more ICMP “complaints” log. Guess it’s a good thing? :slight_smile:

In this chase the best thing to do is to use a specific DNS server (on your windows connections settings) and then add a allow UDP rule for port 53 on that specific server. :wink:

For my ISP connection or my NIC (modem) connection? For the former I can simply ask my ISP on what the DNS server(s) should be, but how would I find out for the latter?

BTW, that rule I added for DNS was for uTorrent, not System or anything else.

It should be displayed at the application of your modem.

Yes, unfortuantly is needed for uttorent too (when you connect through modem).

ps. you can find the IP of the DNS server if you enable the log at the rule Allow DNS Requests at your web browser policy. :wink:

Pandy, you rascal >:( ;D. NOW I think I know what you meant:
Basically, for modem users like me, that rule for uTorrent should be more tighter. I should’ve known this ahead of time as you’re one of the “paranoid” ones when it comes to this :P. So I’m right this is what that DNS rule should become:
Allow
UDP
Out
From Any IP (i.e. mine)
To my DNS IP
From Source Port Any (i.e. any ports on my pc)
To Destination Port 53

Because I tried specifying my DNS server in both scenarios (for my modem config and my DSL connection settings), rebooted my pc in between, and nothing changed; it still showed uTorrent blocking the DNS unless I added that rule.

Exactly! (:TNG) (:WIN)

Hi
I cant seem to get this to work?
2. Go to : Firewall → Advanced → Predifined Firewall Policies and select Add…
theres no Predifined Firewall Policies in ADVANCED???

is it not SECURITY → Application Monitor → ADD ?

I also run KASPERSKY without webscan but what is defense+ on comodo?
am i right in guessing it application behaviour analysis?

Greetings, and welcome to the forums!

I think you’re using CFP 2.4 and not CFP 3. This tutorial explains how to use CFP 3 with uTorrent.
Here’s some posts how to use CFP 2.4 with P2P-software:

Emule, BitComet, BitTorrent, BearShare Lite, Azureus, uTorrent
https://forums.comodo.com/index.php/topic,29.0.html
https://forums.comodo.com/index.php/topic,411.0.html
https://forums.comodo.com/index.php/topic,1022.0.html
https://forums.comodo.com/index.php/topic,2562.0.html
https://forums.comodo.com/index.php/topic,8049.0.html

Cheers,
Ragwing

no im v3
def
ive even downloaded again and installed as advanced but still same
ive seen the other guys screenshot and his is slight diff

your right sorry - its database is v3
so how do i get v3?

http://www.personalfirewall.comodo.com :wink:

Cheers,
Ragwing

ive installed v3 and followed instructions but utorrent still doesnt show the green tick
in fact its now gone RED???

Ive sorted it… restarted the PC and it works now
thanks for all your help…

is it safe to leave defense+ on if i have kas v6 with webscan disabled?