Forums
New posts
Search forums
News
Security News
Technology News
Giveaways
Giveaways, Promotions and Contests
Discounts & Deals
Reviews
Users Reviews
Video Reviews
Support
Windows Malware Removal Help & Support
Inactive Support Threads
Mac Malware Removal Help & Support
Mobile Malware Removal Help & Support
Blog
Log in
Register
What's new
Search
Search titles only
By:
Search titles only
By:
Reply to thread
Menu
Install the app
Install
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Forums
Software
Security Apps
Comodo
Comodo CIS Bug fix policy
Message
<blockquote data-quote="wat0114" data-source="post: 1101005" data-attributes="member: 91306"><p>Btw, even though specific firewall rules can't be made for svchost services (Dhcp, dnsserver, etc) in Comodo, it is possible to still create rules that restrict it to suit the user's requirements. Just a few of the ones I had...</p><p></p><table style='width: 100%'><tr><td><p style="text-align: center"><strong>Program Path or Ruleset</strong></p> </td><td><p style="text-align: center"><strong>Action</strong></p> </td><td><p style="text-align: center"><strong>Protocol</strong></p> </td><td><p style="text-align: center"><strong>Direction</strong></p> </td><td><p style="text-align: left"><strong>Source Address</strong></p> </td><td><p style="text-align: left"><strong>Destination Address</strong></p> </td><td><p style="text-align: left"><strong>Source Port</strong></p> </td><td><p style="text-align: left"><strong>Destination Port</strong></p> </td><td><p style="text-align: left"><strong>Rule Name</strong></p> </td></tr><tr><td><p style="text-align: left">C:\Windows\System32\svchost.exe</p> </td><td><p style="text-align: left">Allow</p> </td><td><p style="text-align: left">TCP</p> </td><td><p style="text-align: left">Out</p> </td><td><p style="text-align: left">Loopback Zone</p> </td><td><p style="text-align: left">Loopback Zone</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">Loopback Zone</p> </td></tr><tr><td><p style="text-align: left">C:\Windows\System32\svchost.exe</p> </td><td><p style="text-align: left">Allow</p> </td><td><p style="text-align: left">UDP</p> </td><td><p style="text-align: left">Out</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">1.1.1.1</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">53</p> </td><td><p style="text-align: left">DNS-Cloudflare</p> </td></tr><tr><td><p style="text-align: left">C:\Windows\System32\svchost.exe</p> </td><td><p style="text-align: left">Allow</p> </td><td><p style="text-align: left">UDP</p> </td><td><p style="text-align: left">Out</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">1.0.0.1</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">53</p> </td><td><p style="text-align: left">DNS-Cloudflare</p> </td></tr><tr><td><p style="text-align: left">C:\Windows\System32\svchost.exe</p> </td><td><p style="text-align: left">Allow</p> </td><td><p style="text-align: left">TCP</p> </td><td><p style="text-align: left">Out</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">443</p> </td><td><p style="text-align: left">Allow out to HTTPS</p> </td></tr><tr><td><p style="text-align: left">C:\Windows\System32\svchost.exe</p> </td><td><p style="text-align: left">Allow</p> </td><td><p style="text-align: left">TCP</p> </td><td><p style="text-align: left">Out</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">80</p> </td><td><p style="text-align: left">Allow out to HTTP</p> </td></tr><tr><td><p style="text-align: left">C:\Windows\System32\svchost.exe</p> </td><td><p style="text-align: left">Allow</p> </td><td><p style="text-align: left">UDP</p> </td><td><p style="text-align: left">Out</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">Any</p> </td><td><p style="text-align: left">123</p> </td><td><p style="text-align: left">123</p> </td><td><p style="text-align: left">Windows Time Update</p> </td></tr><tr><td><p style="text-align: left">C:\Windows\System32\svchost.exe</p> </td><td><p style="text-align: left">Allow</p> </td><td><p style="text-align: left">UDP</p> </td><td><p style="text-align: left">Out</p> </td><td><p style="text-align: left">0.0.0.0</p> </td><td><p style="text-align: left">255.255.255.255</p> </td><td><p style="text-align: left">68</p> </td><td><p style="text-align: left">67</p> </td><td><p style="text-align: left">DHCP</p> </td></tr></table><p></p><p>Years ago I was more motivated with more time on my hands to actually restrict to IP ranges with subnets, such as Microsoft update servers, probably more important to port 80, but nowadays I can't be bothered. IPv6 is not going away, and more websites, especially the big players, are adapting it, so I that's why I wish to see a firewall filter it properly. I don't see a compelling reason to disable it, especially as a home user.</p></blockquote><p></p>
[QUOTE="wat0114, post: 1101005, member: 91306"] Btw, even though specific firewall rules can't be made for svchost services (Dhcp, dnsserver, etc) in Comodo, it is possible to still create rules that restrict it to suit the user's requirements. Just a few of the ones I had... [TABLE] [TR] [TD][CENTER][B]Program Path or Ruleset[/B][/CENTER][/TD] [TD][CENTER][B]Action[/B][/CENTER][/TD] [TD][CENTER][B]Protocol[/B][/CENTER][/TD] [TD][CENTER][B]Direction[/B][/CENTER][/TD] [TD][LEFT][B]Source Address[/B][/LEFT][/TD] [TD][LEFT][B]Destination Address[/B][/LEFT][/TD] [TD][LEFT][B]Source Port[/B][/LEFT][/TD] [TD][LEFT][B]Destination Port[/B][/LEFT][/TD] [TD][LEFT][B]Rule Name[/B][/LEFT][/TD] [/TR] [TR] [TD][LEFT]C:\Windows\System32\svchost.exe[/LEFT][/TD] [TD][LEFT]Allow[/LEFT][/TD] [TD][LEFT]TCP[/LEFT][/TD] [TD][LEFT]Out[/LEFT][/TD] [TD][LEFT]Loopback Zone[/LEFT][/TD] [TD][LEFT]Loopback Zone[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]Loopback Zone[/LEFT][/TD] [/TR] [TR] [TD][LEFT]C:\Windows\System32\svchost.exe[/LEFT][/TD] [TD][LEFT]Allow[/LEFT][/TD] [TD][LEFT]UDP[/LEFT][/TD] [TD][LEFT]Out[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]1.1.1.1[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]53[/LEFT][/TD] [TD][LEFT]DNS-Cloudflare[/LEFT][/TD] [/TR] [TR] [TD][LEFT]C:\Windows\System32\svchost.exe[/LEFT][/TD] [TD][LEFT]Allow[/LEFT][/TD] [TD][LEFT]UDP[/LEFT][/TD] [TD][LEFT]Out[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]1.0.0.1[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]53[/LEFT][/TD] [TD][LEFT]DNS-Cloudflare[/LEFT][/TD] [/TR] [TR] [TD][LEFT]C:\Windows\System32\svchost.exe[/LEFT][/TD] [TD][LEFT]Allow[/LEFT][/TD] [TD][LEFT]TCP[/LEFT][/TD] [TD][LEFT]Out[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]443[/LEFT][/TD] [TD][LEFT]Allow out to HTTPS[/LEFT][/TD] [/TR] [TR] [TD][LEFT]C:\Windows\System32\svchost.exe[/LEFT][/TD] [TD][LEFT]Allow[/LEFT][/TD] [TD][LEFT]TCP[/LEFT][/TD] [TD][LEFT]Out[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]80[/LEFT][/TD] [TD][LEFT]Allow out to HTTP[/LEFT][/TD] [/TR] [TR] [TD][LEFT]C:\Windows\System32\svchost.exe[/LEFT][/TD] [TD][LEFT]Allow[/LEFT][/TD] [TD][LEFT]UDP[/LEFT][/TD] [TD][LEFT]Out[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]Any[/LEFT][/TD] [TD][LEFT]123[/LEFT][/TD] [TD][LEFT]123[/LEFT][/TD] [TD][LEFT]Windows Time Update[/LEFT][/TD] [/TR] [TR] [TD][LEFT]C:\Windows\System32\svchost.exe[/LEFT][/TD] [TD][LEFT]Allow[/LEFT][/TD] [TD][LEFT]UDP[/LEFT][/TD] [TD][LEFT]Out[/LEFT][/TD] [TD][LEFT]0.0.0.0[/LEFT][/TD] [TD][LEFT]255.255.255.255[/LEFT][/TD] [TD][LEFT]68[/LEFT][/TD] [TD][LEFT]67[/LEFT][/TD] [TD][LEFT]DHCP[/LEFT][/TD] [/TR] [/TABLE] Years ago I was more motivated with more time on my hands to actually restrict to IP ranges with subnets, such as Microsoft update servers, probably more important to port 80, but nowadays I can't be bothered. IPv6 is not going away, and more websites, especially the big players, are adapting it, so I that's why I wish to see a firewall filter it properly. I don't see a compelling reason to disable it, especially as a home user. [/QUOTE]
Insert quotes…
Verification
Post reply
Top