![]() |
| |||||||
| Notices |
![]() |
| LinkBack | Thread Tools | Display Modes |
| | #1 (permalink) |
| I installed Adobe Reader 8 on Vista RTM. In Windows Firewall with Advanced Security, I added six outbound firewall rules, one for each of the .exe files in the Adobe directory, to block all outbound traffic. My Vista firewall settings are otherwise set to the installation defaults. When I run Adobe Reader and choose Help/Check for Updates, it successfully connects to Adobe's servers and tells me whether any updates are available. Why isn't the firewall blocking it from doing this? | Guest
Posts: n/a
|
|
| | #2 (permalink) | |
| "Roof Fiddler" <fiddler@roof.com> wrote in message news:%23h0hYzBSHHA.4632@TK2MSFTNGP04.phx.gbl... Quote:
profiles, public, private and domain. Each can have different firewall rules. Look in the "Network and Sharing Center" to see which profile is active. | Guest
Posts: n/a
| |
|
| | #3 (permalink) | |
| "Martin Hueser" <hueser@gmx.net> wrote in message news:4977C2C6-47C1-4FE7-9561-3F2708C65B82@microsoft.com... Quote:
| Guest
Posts: n/a
| |
|
| | #4 (permalink) | ||
| Roof Fiddler;166750 Wrote: Quote:
Check the following settings: 01. Open the Firewall GUI and select "Windows Firewall Properties" (hyperlink styled text) from the (center)main page. 02. Check if the setting "Outbound connections" (drop-down button) in section "State" is set to "Block". Otherwise do so... IMPORTANT NOTE: please keep in mind that by performing this action, all outbound traffic without explicit rules to allow outbound traffic will be blocked. Including Windows Update etc. For all the application you should make seperate rules allowing them to connect... Good luck! -- ABoyCalledSilly - windows vista ultimate 64-bit en --------------------------------------- - cooler master stacker 830 - asus p5b deluxe - conroe e6600 - 2x corsair memory (twin2x2048-8500c5) - 3x seagate barracuda 7200.10, 320gb (sata ii, 16mb) - ati sapphire x1950 pro - creative x-fi xtreme gamer ------------------------------------------------------------------------ ABoyCalledSilly's Profile: http://www.vista64.net/forums/member.php?userid=1371 View this thread: http://www.vista64.net/forums/showthread.php?t=35645 | Guest
Posts: n/a
| ||
|
| | #5 (permalink) | |
| "ABoyCalledSilly" <ABoyCalledSilly.2ljrrc@no-mx.forums.net> wrote in message news:ABoyCalledSilly.2ljrrc@no-mx.forums.net... Quote:
gave up in frustration while trying to do that months ago while running RC1 and RC2 because Vista wouldn't honor my rules to allow certain outbound connections.) I need to block particular programs from initiating outbound connections, not block all programs. | Guest
Posts: n/a
| |
|
| | #6 (permalink) | |||||
| Roof Fiddler;171113 Wrote: Quote:
Can you specify the "rules it wouldn't honor"? Maybe there's a solutio around the corner : Another option is using your Hostfil (C:\Windows\System32\drivers\etc\hosts). Have you tried using it Example: suppose a certain application tries to connect to a specifi url/ip. Entering the following lines (use notepad or something) in you hostfile will redirect all traffic to ip 127.0.0.1 (local 127.0.0.1 'www.domainname.com' (http://www.domainname.com 127.0.0.1 update.domainname.co 127.0.0.1 123.456.789. Good luck -- ABoyCalledSill - windows vista ultimate 64-bit en --------------------------------------- - cooler master stacker 830 - asus p5b deluxe - conroe e6600 - 2x corsair memory (twin2x2048-8500c5) - 3x seagate barracuda 7200.10, 320gb (sata ii, 16mb) - ati sapphire x1950 pro - creative x-fi xtreme game ----------------------------------------------------------------------- ABoyCalledSilly's Profile: http://www.vista64.net/forums/member.php?userid=137 View this thread: http://www.vista64.net/forums/showthread.php?t=3564 | Guest
Posts: n/a
| |||||
|
| | #7 (permalink) | ||
| "ABoyCalledSilly" <ABoyCalledSilly.2lmfzu@no-mx.forums.net> wrote in message news:ABoyCalledSilly.2lmfzu@no-mx.forums.net... Quote:
name: "block network for adobe reader" profile: any enabled: yes action: block program: %ProgramFiles%\Adobe\Reader 8.0\Reader\AcroRd32.exe local address: any remote address: any protocol: any local port: any remote port: any allowed computers: any properties\programs and services\services\settings\apply this rule as follows: apply to all programs and services properties\advanced\profiles: all profiles profiles\interface types\customize\This rule applies to connections on the following interface types: All interface types I have one such rule for every EXE in the %ProgramFiles%\Adobe directory (six EXEs total), including AcroRd32.exe. Yet when I run the program and tell it to check for updates over the internet, it does so with no problem. Not that it should matter, since those outbound rules I have in place should cover all cases, but my active profile is Public, and I have inbound connections blocked by default and outbound allowed by default. I'm running RTM, UAC is enabled, and I'm using an administrative account. I don't have any firewall software installed other than the default one included with Vista, and I don't have any configuration complications which I could imagine might be causing my problem. I know that specifying the programs using the pathname %ProgramFiles%\Adobe\Reader 8.0\Reader isn't the problem because Vista itself chose to specify it that way; I just used the New Outbound Rule wizard to create the rules, and selected the programs using the file dialog box. Quote:
particular sites, but block particular programs from accessing any sites. | Guest
Posts: n/a
| ||
|
| | #9 (permalink) | |
| "sd321" <sd321@discussions.microsoft.com> wrote Quote:
AdobeUpdater.exe is the file. -- Rock [MVP - User/Shell] | Guest
Posts: n/a
| |
|
| | #10 (permalink) | ||
| "Rock" <rock@nospam.net> wrote in message news:%23vv91lVTHHA.1228@TK2MSFTNGP06.phx.gbl... Quote:
Now I have another question. If this is how Vista works, then doesn't it mean that outbound rules are useless as a security measure on a system where outbound connections are allowed by default? If a program finds that it can't get a connection, all it has to do is create a new .exe file and then run it, and the new .exe can get to the network. That means on Vista, in order to have outbound security, you have to disallow outbound connections by default and add rules to allow connections for particular trusted programs. Wouldn't it make more sense for an outbound rule for a program to apply not to the program, but to all _processes_ started from that program? (And of course to children of that process too.) That would solve the problem, and allow outbound connections to be allowed by default without allowing blocked programs to get around the rules this way. | Guest
Posts: n/a
| ||
|
![]() |
| Tags |
| None |
| Thread Tools | |
| Display Modes | |
| |
| ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Firewall rules: how to get list of allow program through firewall? | Manoj Chanchawat, Symantec Corporation. | Windows Vista Security | 1 | 10-18-2006 07:55 PM |
| Windows Live Messenger - Firewall rules | Venkatarangan TNC | Windows Vista Networking & Sharing | 0 | 10-12-2006 05:34 PM |
| Outbound Firewall Rules | David Sherman | Windows Vista | 2 | 05-12-2006 05:18 PM |
| PICS Rules/Porno Sites Blocking | Waverly | Windows XP Security & Administration | 0 | 07-15-2003 09:32 AM |
| Firewall blocking secure sites? | michael keith | Windows XP Security & Administration | 0 | 07-08-2003 11:43 PM |