why can't a firewall block all the connection of a program?

Discussion in 'other firewalls' started by mantra, Jun 20, 2018.

  1. mantra

    mantra Registered Member

    Joined:
    Jan 25, 2005
    Posts:
    6,195
    @Sm3K3R
    hi
    WFC missed in all my tests (and it's not free) , about sending outbound information during the boot could be really a problem !
    thanks
    @TairikuOkami
    hi
    Simplefirewall can detect them whithout disabling dns cache
    do you mean that disabling dns cache service even SpyShelter can catch services ( look #22)?
    thanks
     
  2. TairikuOkami

    TairikuOkami Registered Member

    Joined:
    Oct 10, 2005
    Posts:
    3,440
    Location:
    Slovakia
    By default DNS Cache makes DNS requests using svchost.exe, if it is disabled, all DNS requests (via port 53) are made by apps themselves, requiring DNS rules in the firewall for each.
     

    Attached Files:

  3. mantra

    mantra Registered Member

    Joined:
    Jan 25, 2005
    Posts:
    6,195
    hi @TairikuOkami
    do you keep client dns service disabled?
    thank a lot!
     
  4. TairikuOkami

    TairikuOkami Registered Member

    Joined:
    Oct 10, 2005
    Posts:
    3,440
    Location:
    Slovakia
    Always, since Vista. DNS Cache makes no sense with fast DNS servers like 1.1.1.1, not to mention, that it helps to mitigate some attacks, like DNS poisoning, etc.
     
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.