![]() |
|
#51
|
|||
|
|||
|
Quote:
Quote:
I wouldn't worry about it as long as you downloaded it from an official source.
__________________
How to Stay Safe While Online |
|
#52
|
||||
|
||||
Re: How to Install Comodo Firewall
Thanks Chiron, now on to configuring it without having to use an antivirus..
![]()
__________________
Revelation 21:4 And God shall wipe away all tears from their eyes; and there shall be no more death, neither sorrow, nor crying, neither shall there be any more pain: for the former things are passed away. |
|
#53
|
||||
|
||||
Re: How to Install Comodo Firewall
Install Comodo and set it up according to your directions... the first thing it zapped was that GRC Leak Test.. Flagged it as Malware then proceeded to clean it off..
Thanks.. Hogndog
__________________
Revelation 21:4 And God shall wipe away all tears from their eyes; and there shall be no more death, neither sorrow, nor crying, neither shall there be any more pain: for the former things are passed away. |
|
#54
|
||||
|
||||
|
If people want to improve D+'s ability as an anti-executable, they may want to consider adding more file extensions under "File Groups" > Executables. Personally I consider several more things that could act as potential executable code than is on that list.
I personally don't really have to worry about it because I have the extensions in my SRP already. And speaking of which... the default list of file extensions in SRP (I use XP Pro so that's what I'm going by here) is a good frame of reference for which ones to add to Comodo. You can find it in (I use classic view): Control Panel > Administrative Tools > Local Security Policy > Software Restriction Policies... then right clicking on "Designated File Types" and going to Properties. Granted the list is kind of overkill/paranoid. You don't have to add them all. I compromise a bit with the .lnk extension. I remove it from the SRP list, as it can be a PITA, blocking your shortcuts. This creates a more user friendly default deny SRP. The compromise is that I add it to my Comodo list instead. So that if a shortcut ever does exhibit suspicious activity, D+ would flag it. And you can do this mixing & matching with other extensions too. Remove some from your SRP list and add them to the Comodo one, for better usability. SRP & HIPS don't have to be mutually exclusive... they can co-exist together, even compliment one another. For people that don't have SRP (Home versions), and/or don't feel like digging it up, I'll list the file extensions here: exe, dll, sys, ocx, bat, pif, scr, cpl, com, cmd, lnk*, ade, adp, bas, chm, crt, hlp, hta, inf, ins, isp, mdb, mde, msc, msi, msp, mst, pcd, reg, shs, url, vb, wsc * = my aforementioned "compromise"
__________________
XP Pro SP3: Comodo FW/D+ 5.10 ▪ Sandboxie ▪ VT Hash Check ▪ OpenVPN ▪ VirtualBox Last edited by luciddream : August 31st, 2012 at 08:50 AM. |
|
#55
|
|||
|
|||
|
Quote:
However, if anyone was trying to set it up as an anti-executable your advice would be very helpful.
__________________
How to Stay Safe While Online |
|
#56
|
||||
|
||||
|
I wanted to share how I harden my rules for Web Browser under "Predefined Policy":
Rule 1 - Loopback Allow TCP Out Source Address - Type: IPv4 Single Address, IP: 0.0.0.0 Destination Address - Type: Network Zone, Zone: Loopback Zone Source Port - Any Destination Port - Any Rule 2 - HTTP Allow TCP Out Source Address - Type: Network Zone, Zone: LAN Destination Address - Any Source Port - Any Destination Port - Type: A Set of Ports, Ports: HTTP Ports Rule 3 - DNS 1 Allow UDP Out Source Address - Type: Network Zone, Zone: LAN Destination Address - Type: IPv4 Single Address, IP: 8.26.56.26* Source Port - Any Destination Port - Type: A Single Port, Port: 53 Rule 4 - DNS 2 Allow UDP Out Source Address - Type: Network Zone, Zone: LAN Destination Address - Type: IPv4 Single Address, IP: 8.20.247.20* Source Port - Any Destination Port - Type: A Single Port, Port: 53 Rule 5 - Block Rule Block IP In/Out Source Address - Any Destination Address - Any IP Details - Any * = Comodo Secure DNS servers (choose your own, naturally) Not a big diff. from the default rule, but I like to tighten things however I can, even if it's minimal. There were a couple rules in there (I forget what now) I simply didn't need. And this is assuming you have zones under "Network Zones" for both Loopback and your LAN.
__________________
XP Pro SP3: Comodo FW/D+ 5.10 ▪ Sandboxie ▪ VT Hash Check ▪ OpenVPN ▪ VirtualBox |
|
#57
|
|||
|
|||
|
Chiron, care to update your post on "How to Install Comodo Firewall" at www.techsupportalert.com with the new Comodo 6?
__________________
Eset Smart Security v6 - SRP Enforcer - Peerblock - AdFender - Malwarebytes AntiMalware - Hitman Pro |
|
#58
|
||||
|
||||
|
Chiron, I have one question only and you are propably the one that can answer it. I set up Comodo according to your guide (the only thing is that i did not install Antivirus) http://www.wilderssecurity.com/showt...52#post2127652. My main problem is that Defense has blocked my Windows Updates today, can you help me how to automatically allow them?
|
|
#59
|
|||
|
|||
|
Quote:
Set your firewall/D+ to learning for a few days and download/install/use whatever you like (that you know is safe!) and then just turn it back to safe/custom mode, whichever you preffer.
__________________
Eset Smart Security v6 - SRP Enforcer - Peerblock - AdFender - Malwarebytes AntiMalware - Hitman Pro |
|
#60
|
|||
|
|||
|
Quote:
Quote:
If you did not do either of these then something is wrong with your program. Please run the diagnostics, and if they are not able to fix the problem then reinstall it by following the advice I give on this page. That should solve your problems. If you have any more questions please feel free to ask. Thanks.
__________________
How to Stay Safe While Online |
|
#61
|
||||
|
||||
|
I did the installation in 4 pc with the same configuration and only one passed the windows updates clean. I did not do either of these two options you mention (diagnostics did not find any problem)
|
|
#62
|
||||
|
||||
|
Is this so called firewall still featuring the attack detection component ?
Last time i ve installed it (3 months ago) at default everything was passing thru it was like using the Windows firewall but with more calling home connections.
__________________
Over & Out! |
|
#63
|
|||
|
|||
|
Quote:
I think the key to understanding this is in your configuration.
__________________
How to Stay Safe While Online |
|
#64
|
||||
|
||||
|
Thank you, Chiron, for your Comodo FW install guide. I've seen that guide before but didn't know that you were the author of it, nor did I know that you're also a member here.
![]()
__________________
"A wise man believes only in lies, trusts only in the absurd, and learns to expect the unexpected." - John Houseman, Rhoald Dahl's Tales of the Unexpected |
|
#65
|
||||
|
||||
|
Quote:
Thanks for the tip. I was wondering if the whitelist can be edited instead? Seems like that would cut down on a lot of new alerts.
__________________
"A wise man believes only in lies, trusts only in the absurd, and learns to expect the unexpected." - John Houseman, Rhoald Dahl's Tales of the Unexpected |
|
#66
|
|||
|
|||
|
what is the difference btw the 3 configuration ? (proactive, internet security , firewall) does it just have to do with defense+? (i use comodo AV mostly for the HIPS only)
__________________
Look'n'stop (Phant0m ruleset) / Avira 2013 (no webguard installed) / Sandboxie 3.76 |
|
#67
|
|||
|
|||
|
Quote:
Please let me know if you have any questions. Quote:
__________________
How to Stay Safe While Online |
|
#68
|
||||
|
||||
|
Quote:
if you are using only the firewall for example, then switching to Proactive will turn on D+ and the sandbox. personally, i like to stay in the Firewall mode since it's the sum of all your tweaks and changes. kind of like a Manual mode.
__________________
| Sphinx Firewall || NoScript || Image for Linux + BootIt Bare Metal | |
|
#69
|
||||
|
||||
|
I always use proactive security.Feel more secure this way.
__________________
Avira Free Antivirus.||Comodo Firewall 5.12.||Sandboxie.||MBAM free version.|| For we wrestle not against flesh and blood, but against principalities, against powers, and against the worldly governors, the princes of the darkness of this world... |
|
#70
|
||||
|
||||
|
Looks like I failed the "TruStealth Analysis" at the GRC/ShieldsUp site -- should I work to change this or leave it be?
http://i1231.photobucket.com/albums/...psd6139b91.png Quote:
__________________
"A wise man believes only in lies, trusts only in the absurd, and learns to expect the unexpected." - John Houseman, Rhoald Dahl's Tales of the Unexpected |
|
#71
|
||||
|
||||
|
Quote:
Thanks for your interest in my case. The only changes are: 1. Add Interenet explorer and Chrome in Network Security Policy (Web Browser) 2. Do not show firewall and defence prompts (Block) 3. Unrecognised files marked as "Untrusted" The thing is that is blocking the downloads from Windows Update as Unrecognided files and marked them as "Untrusted" |
|
#72
|
|||
|
|||
|
Quote:
Quote:
My advice would be to post this on the Comodo forum so someone who has a better understanding of the firewall help you much better than I am able.
__________________
How to Stay Safe While Online |
|
#73
|
|||
|
|||
|
Comodo Internet Security version 6.0 was just released on the Comodo forums:
http://forums.comodo.com/news-announ...-t89185.0.html However, please do be aware that this new version will probably not be pushed as an automatic update to the previous version for a few weeks. I've therefore updated this article for the new version. Please let me know what you think of it.
__________________
How to Stay Safe While Online |
|
#74
|
||||
|
||||
|
Quote:
Installing and configuring CIS v6 with the updated article went smooth, thanks Chiron for taking the time to do this. |
|
#75
|
||||
|
||||
|
Quote:
Can you comment on what, if anything, is different in the v6 firewall?
__________________
ut quod ego verus est maioribus quam ut quod est sanctus |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|