your defense+ is in trainings mode. the most unsafe mode. EVERYTHING is learned automatically AND saved in a rule.
if you want to see questions in FIREWALL (because your defense+ is like disabled anyway, BUT learning, bad combination):
switch firewall to custom mode. and give programs no permission for ingoing traffic, but for outgoing udp+tcp. then it should work and be safe enough.
BTW use safe mode in defense+, and erase all rules it has made lately. you dont have to answer many questions, and after answering them, defense+ is mostly quiet.
dont make permanent rules for temporary items like installer!
try skype with “allow OUTgoing udp+tcp”.
i do all this things, Custom and Safe, and erased all rules.
in the first moments i saw:
Firefox Minifield ask 3 times, i allowed it, but when its open, all sites are like in off line mode(sure ff is blocked).
what i need to do? open Comodo > go to Firewall tab > Define a New Trusted Application > Select Runing Processes > choose my Process > click in Select > then click in Apply button.
after all of this my Windows Live Messenger open without any question, but it cant connect on the internet.
what i did? the same steps to Define a New Trusted Application.
i never used a “trusted application setting”. NEVER. no need.
i start firefox for the first time. defense+ asks something, i allow that. firewall asks, i allow “treat as web browser”. and all works.
you maybe make it too complicated and got lost in the process, thats all.
reproduce my firefox example, and you will see. (tick “show more options” in the question window for defense+ AND for the firewall with first use!)
dont forget to use specific OUTgoing rules, and avoid to use INgoing rules (trusted means “all allowed”, and thats not good anyway).
if i want to use an instant messenger, i allow the defense+ questions. in firewall i would allow “messenger exe OUTgoing UDP+TCP”… nothing else. and i can tell you, it will run. i do this for years, never a problem. of course you could set ip based rule sets. but OUTgoing UDP+TCP is much more safe than “trusted application”.
gald,
when its not about configuration, i would have the same problem as you.
here is all working fine like allways. so it must be your way of configuration, or?
sometimes people dont see the forrest because of an amount of trees
i hope this problem will be solved soon.
have you tried my example of skype? does it work?
(if i want to use an instant messenger, i allow the defense+ questions. in firewall i would allow “messenger exe OUTgoing UDP+TCP”… nothing else. and i can tell you, it will run. i do this for years, never a problem. of course you could set ip based rule sets. but OUTgoing UDP+TCP is much more safe than “trusted application”.)
that you dont misunderstand me, i dont want to talk away your problem. i am interested to solve it too.
ok. first, your headline is talking generally. but as you see, YOUR comodo is blocking everything, mine is working fine. the youtube video seems to be a “i found a bug” video. but it lacks some infos to provide prove… like (behaviour and question)-settings of the firewall ect. in fact, you are testing YOUR “invisible” setting. and there is definitely a bug in your setting. comodo is “setable”, so its possible to make logical consequences which lead to in-security. but it was your action which causes it.
i think, i know what the problem is: you dont get any questions, because you maybe have unticket
“alarms for tcp, udp… ect” (or something like that, an easy mis-setting). in firewall—firewall behaviour settings---- alarm settings (dont know the exact english user interface words).
then you dont get a question! your video leaves questions, it doesnt show the important settings.
if that doesnt help, … what happens without activated sandbox?
once again, probably YOUR setting is causing a problem. you should not blame whole comodo for it.
if it was whole comodo, no one would use it!
there is no reason for disabling them. and some applications need UDP traffic too (for example games).
hope you didnt disable other important things for any reason.
it would be the best to delete the video, because it isnt needed no more, and the headline is misleading . the description sounds, as if you have to enable these questions, but in fact, you disabled them first. nvm.
and once again, you need basically OUTgoing rules (apart from running a server or using p2p).