PDA

View Full Version : LnS 205b2


trizzipin
February 28th, 2004, 07:17 PM
Im about to install the new version but i read all this about downloading extra drivers (updated ones) or somethin after you downloaded 205b1 so are those needed also in this version if so whats link again to get them ? and any other steps i would take to first setting this up with my dsl connection would be grealy appreciated like downloadable ruleset .
thanks

Phant0m
February 28th, 2004, 07:50 PM
Hey trizzipin


Look ‘n’ Stop v2.05b2 contains fixed Hyper-Threading driver for Win2K/XP systems, Look ‘n’ Stop v2.05b1 you had to manually apply new driver which is Hyper-Threading fixed driver for Win2K/XP systems.

Look ‘n’ Stop v2.05b2 has other changes and fixes, English version of Look ‘n’ Stop v2.05b2 is available for download by clicking HERE (http://looknstop.soft4ever.com/Beta/En/2.05b2/LooknStop_Setup_205b2.exe).

Take a gander at http://www.wilderssecurity.com/showthread.php?t=22966, first thread which helps one to get started…

And after getting started and you want to explore Phant0m``s Rule-set $v5.0 take a gander at http://www.wilderssecurity.info/Phant0m.shtml.

And by the way, welcome to wilders board, but if you are not new to the board then welcome at least to the Look 'n' Stop English forum :D

trizzipin
February 28th, 2004, 08:35 PM
thanks for the quick response ive installed it along with the phantom sept ruleset and all i had to change was the dns rule and everything is working perfectly. Now my question is i notice you cant limit your apps to certain ports , is there a plugin that can allow it i saw on the looknstop that there was but dont know if it actually works for programs itself any light on this would be appreciated

Phant0m
February 28th, 2004, 08:38 PM
In Application Filtering screen, double click on a Entry

trizzipin
February 28th, 2004, 08:38 PM
i looked at it and found you can choose an app i think but its all confusing its a lot different from using outpost if you can make certain rules for only certain apps , how do you go about doing it

trizzipin
February 28th, 2004, 08:41 PM
i didnt see ur last response about double clicking on an app , i tried it but nothing happens when i double click on it in app filtering and for some reason my connection keeps dropin now and back up

trizzipin
February 28th, 2004, 08:43 PM
i just noticed i dont think app filtering is working its not recognizing connected apps and when i open a new one it doesnt ask anything it is checked though..

Phant0m
February 28th, 2004, 08:44 PM
Hey trizzipin

In Application Filtering screen, is the App-List empty? if not empty it and launch Internet Explorer...

trizzipin
February 28th, 2004, 08:48 PM
its empty, i launched ie and nothing popped up from lns asking for permission to use it or anything its like app filtering is disabled

Phant0m
February 28th, 2004, 08:50 PM
OK, please visit http://www.wilderssecurity.info/0305.shtml

trizzipin
February 28th, 2004, 08:59 PM
ok great that patch fixed it now for allowing apps only on certain ports you said to double click on the app in app filktering i do that and nothing happens ?

Phant0m
February 28th, 2004, 09:03 PM
http://www.wilderssecurity.info/0201.shtm & http://www.wilderssecurity.info/0205.shtml

First link, view around the last image on the page, second link goto near bottom until you see something in reference to "Application"

trizzipin
February 28th, 2004, 09:16 PM
Ok i looked on that page i found how to make rules for certain apps , but i just cant seem to understand how to allow my browser on only ports 80,443,21 (meaning it would block all other ports for that app except those) it seems extremely confusing to me.

trizzipin
February 28th, 2004, 09:22 PM
lol problems just keep piling up my internet keeps losing connection with lns back and forth non stop for a few secs or min

Phant0m
February 28th, 2004, 09:26 PM
-{ Quote: " quoting: trizzipin link=board=13;threadid=23169;start=0#msg137311 date=1078021333]
lol problems just keep piling up my internet keeps losing connection with lns back and forth non stop for a few secs or min
" }-

You mentioned awhile ago you only configured the DNS rules, you using xDSL therefore you must configure also the DHCP rules.

Phant0m
February 28th, 2004, 09:28 PM
In addition; verify the DNS rule or rules is configured properly!

killjoy
February 28th, 2004, 09:43 PM
ok i registered! i found and edited both dhcp rules and things seem to be fine now. Now for the app editing i found this in the ss but i cant seem to find how to get to this screen, or how other way would i go about making my browser accept TCP,Outbound ports 80,443, and 21 and restricting all other ports EXCEPT these for both protocols and dirrections.

Phant0m
February 28th, 2004, 09:48 PM
...

killjoy
February 28th, 2004, 09:56 PM
i found That ss on the lns website, so i dont know how to bring up that screen inside lns, how would i go about doing that .so all i do is add 80,443,21 where you have the number 80 showing and under udp the !65535 means it will block all those udp ports ? how about the rest of the tcp ports how would those be blocked then ?

Phant0m
February 28th, 2004, 10:02 PM
If you read what has been said on http://www.wilderssecurity.info/0201.shtml, near bottom of the page it says “Use ; as a separator, - to specify a range, and ! for blocking.”.

Phant0m
February 28th, 2004, 10:04 PM
If IP or port field is empty, it’ll apply to ALL IP or ports, but if you put insert IP/IPs or Port/Ports into the field it’ll only apply to those entered IP/IPs or Port/Ports. ;)

killjoy
February 28th, 2004, 10:39 PM
sry i didnt catch that but ive read through it all now and finnaly got it all setup and understand it. this is what i put under tcp
80;443;21;!1-20;!22-79;!81-442;!444-6553 , but for some reason whenever i click on the edit button this is what shows up 80;443;;!1-20;!22-79;!81-442;!444-65535 (note port 21 is missing now i alrdy tried entering and hitting ok a few times it just brings it back to that though. Aside from that the rule for tcp i made will only allow ports 80,443,21 correct ? And to block those ports 80,21,443 from making outbound connections you have to go into internet filtering make a rule including kmeleon and set it to outbound dirrection then deny ?

Phant0m
February 28th, 2004, 10:45 PM
You see the attached image above? do as shown but rather with just tcp port 80 you use

21;80;443

Nothing else needs to be added, only ports that are listed aren't going to be blocked.

For UDP port i used !0-65535 because if i leave port field empty it'll apply to all ports and since i don't want to allow even a single udp port i use !0-65535 which will apply to blocking ALL UDP ports... :)

killjoy
February 28th, 2004, 10:50 PM
thanks went ahead and made the change, didnt kno it would block any port not mentioned :)
sigh but now i tried running Overnet and it wont connect , even made a rule to allow all ports on both tcp and udp but its not connecting looked at my logs and its getting flooded with blocked packets while its trieng to connect, why would it be blocking something when i set it to allow all ports , how would i go about fixing this
thanks again i know i must be a headache with all these questions by now lol

Phant0m
February 28th, 2004, 10:55 PM
Not known to Overnet p2p, best thing for p2p Software is leave the Port fields alone for TCP, UDP and focus firstly on making proper Internet Filtering rules and afterwards when she works then focus on that there feature...

killjoy
February 28th, 2004, 11:00 PM
wow you have an answer for every question ! went ahead and did exactly what you said it connects perfectly now.
One last question since i used to use Outposts build in ad blocking and now i use lns im thinkin about using Proxomitron to do the job, how would i go about making all the necessary changes in rules etc to work with proxomitron

Phant0m
February 28th, 2004, 11:04 PM
One last question only? Damn! LOL



Hmmmm shouldn’t require any change in the Internet Filtering rules….

Also you may want to give Ad-Muncher and Adsubtract PRO a gander at...

killjoy
February 28th, 2004, 11:09 PM
haha yeah i think ive tried those before but a while back but proxo is just more thorough and blocks more and does more things, but i might also give those a try again. why i ask about changing rules in lns is because in past firewalls ive had like kerio you had to change every app to use the ip adress 127.0.0.1 and edit the normal loopbackrule , because proxomitron is a proxy so i have to make those changes in my settings to use that proxy ip adress

killjoy
February 28th, 2004, 11:18 PM
yea i think they have to be changed this is what i found

"The standard loopback allows all traffic with the localhost loopback, and if you use a software proxy you will want to configure the port ranges to exclude any ports used for software proxies, which you will have to make allow rules per program so you don't have the proxy be a hole in your firewall. You can also make separate rules for programs that require loopback access, and not use any general loopback rules."

killjoy
February 29th, 2004, 12:35 AM
ok i hit remove all under the log panel now it doesnt log anything , how can i fix this sry if im being a pain :(

Phant0m
February 29th, 2004, 12:36 AM
When you Empty the Look 'n' Stop Log screen, and you want to see blockings? goto Online Scan like Shields UP!! or www.pcflank.com

killjoy
February 29th, 2004, 12:57 AM
i alrdy tried that its like logging is disabled now.

Phant0m
February 29th, 2004, 01:01 AM
In Look 'n' Stop Welcome screen, what you see for "IP Address:"?

If you made rule-set changes in Internet Filtering screen, you probably done wrong.

Verify "Internet filtering enabled" is checked in Internet Filtering screen.

killjoy
February 29th, 2004, 01:39 AM
my ip adress like always its enabled whenever i do a stealth test i pass it but it just wont log i guess i will just reinstall, all i need help with now is setting it up to use with a proxy like where the loopback rules should go and i forget exactly what to make them and any other steps i need to do to have it set up to use a proxy

killjoy
February 29th, 2004, 11:21 AM
well i feel stupid, i found the problem with the logging i had only taken outpost from starting with the system in msconfig.exe BUT i left the outpost serive in automatic in services.msc so outpost was starting along with lns and stealing all the logs :-X

Now if i can only get some help with setting lns up to use with a proxy i will be completely satisfied with this long post of questions i started lol.

Phant0m
February 29th, 2004, 11:28 AM
Install that proxy server Software and configure the Proxy server Software and take it from there... :)

killjoy
February 29th, 2004, 11:40 AM
you have to change some of the rules though and since this firewall is a little different i wouldnt know where to place the edited loopback rules i would have to make and then i would also have to edit each app to use 127.0.0.1 as well as other changes ?
can u pls look at this post it shows how different rules are for a proxy/w.o proxy
http://www.dslreports.com/forum/remark,6642367~root=kerio~mode=flat
because if rules arent changed to be used for a proxy an app can piggy back out because there will be a hole in the firewall.

Phant0m
February 29th, 2004, 12:28 PM
I’m trying to tell you there are no necessary rule additions for Local Proxy server activity… ;)

killjoy
March 3rd, 2004, 10:08 PM
Sry for late response,i tried usin proxo along with lns but for some reason it didnt work i even had all the settings changed for browsers etc. But no problem there i tried ad muncher and it works great and no need to set up for a proxy with it! Only problem ive ran into lns so far is when i ran steam for some reason when it was loading up all the servers to join it would block it even though i had it on accept all for the steam app, but i will look into it more. im still getting used to the difference in setting up rules for apps in this firewall though.
Thanks for the GREAT help phantom