[solved] Firewall preventing DHCP from assigning IP-address

Hello,

I’ve been having connectivity problems for the past few days and I’ve finally traced back the problem to my Comodo firewall. In “Safe” mode, it prevents the router from assigning me an internal IP-address. I have to disable the firewall completely to regain connectivity. In trying to solve the problem, I deleted all firewall rules for svchost.exe, which I thought could be a potential cause. However, it’s still not working and I really don’t like browsing unprotected. Any suggestions would be very welcome.

OS: XPpro SP3
Comodo firewall version: 4.1
Connection via LAN/cable

Thanks :slight_smile:

What blocked events appears in Log?

Actually, none at all. The only blocks that are logged date from a few days ago, when the trouble started.


COMODO Firewall - Log Viewer Logs 
 	 	Table	:	Firewall Events
 	 	Date Created	:	2010-07-30 12:31:31
 	 	Records count	:	15
Date	Application	Action	Direction	Protocol	Source IP	Source Port	Destination IP	Destination Port
2010-07-26 22:50:40  	C:\WINDOWS\system32\svchost.exe  	Asked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:51:04  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:53:37  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:53:41  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:53:48  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:55:17  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:55:21  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:55:30  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:56:09  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:56:14  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:56:22  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:56:33  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:56:36  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:56:44  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
2010-07-26 22:57:01  	C:\WINDOWS\system32\svchost.exe  	Blocked  	In  	UDP  	xx.xx.xx.x  	17152  	xx.xx.xx.xxx  	17408  
End of The Report

Why do you want your router to assign you a dynamic LAN ip?

Assign a fixed one, say 192.168.0.10 if your router’s one is 192.168.0.1.
Disable DHCP and specify in your NIC properties your router’s IP as a gateway, and the DNS of your FAI.

Now make a LAN zone in CIS (192.168.0.1-192.168.0.255) and allow scvhost and system as long as both source and destination are your LAN zone; ask as a learning process or block whatever else.

I’m unable to access the router (neither physically nor remotely), which I share with 5 other people. I would have configured the router to solve the problem, but sadly that really is no option for me.

You do not have to configure the router, but only to know, if it is default, its LAN ip, most often either 192.168.1.1 or 192.168.1.1 depending upon the brand.

what you suggested can’t really solve why cis blocked router assign dynamic ip…

It appears to be working again. I have no idea what caused or fixed it, so I can only hope that the problem does not reappear. Thank you all for your suggestions :slight_smile: