Connections Log would benefit from a new Refresh setting - Auto Refresh in seconds. Just following a program's behavior and it's numbing hitting...
I believe it would, because if the normal rule for High Filtering UDP would be block ports 0-65535, leaving a hole for 123 as in 0-122,124-65535...
Installed WFC 6.9.9.4 to a new installation, imported existing options and rules, noticed that the Authorized Groups list is not included in the...
Thank you, very useful :thumb:
Please do elaborate and save us the googling, what commands to use to turn nic off and on?
Didn't change it, the log was working still fine with 6.9.9.1 - I know because I had to look up something just the day before - then came 6.9.9.2...
Well here is where it gets interesting, there's no LogAutoLoad reg key on my install, despite fresh installing 6.9.9.2 . How is this even...
It would increase chances of posting it, if it was not shown in small red letters in the install window, and then disappear quickly. Not asking...
Right, so any good guesses where? Updating the firewall is the only thing I've done. It's a bit far fetched to start looking elsewhere when the...
Updated from 6.9.6.0 to 6.9.9.1, gui cannot handle the update automatically, some error. Downloaded separately, update still won't go through....
Would it be possible just to test if the GPO setting is active and warn the user about it? My point is that it's quite terrible that WFC shows the...
I can't verify this atm but there seems to be an incompatibility with WFC if Windows 11 Baseline Security has been applied. WFC shows that at...
But still no multi rule editing. A new Windows 11 machine has a total of ~1500 rules counting in the hidden rulesets in...
This time using Nirsoft's LiveTcpUdpWatch since it has a nice flow view for tcp, but it doesn't know how to tie UDP messages into flows (udp and...
Some more questionable behavior by MS apps: download MSERT.EXE the Microsoft Support Emergency Response Tool, which does offline virus scanning....
After deleting the key Computer\HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\RestrictedServices it...
I have never seen them mentioned anywhere. But I think they are the answer to the strange case, where data gets sent out by svchost despite there...
The curious part was that despite svchost wuauserv service had an allow rule, they were still getting blocked. Something not working quite right...
Trying out the Windows Server 2022 Eval and the log shows a lot of dropped outbound packets, for which I have allow rules in place. WFC is set to...
This is interesting, could you expand this a little? Why do tcp and udp need their own rules in order to accept incoming connections? I've really...
And related to rule security, because MS is unable to guarantee the evaluation order and acceptance of the rules (the "most specific" is supposed...
Found another bug/feature: make a new blank rule, enter 0.0.0.0/0 as (one part of) local/remote address. Click Create, poof, where did the rule...
This is a "forever old" bug which is still present in 6.4.0.0: -Make a firewall rule with the "windows defender firewall with advanced security"...
Is it possible to find out which firewall rule actually made the block, from the filter information? Filter Information: Filter Run-Time ID:...
I managed to realize the proper syntax for the custom view xml filter Tweaking that it's possible to have a view that only includes whatever one...
Separate names with a comma.