Windows Vista Forums

Firewall rule created, but firewall drops
  1. #1


    FIST Guest

    Firewall rule created, but firewall drops

    Hello everyone,

    I have a Dell Notebook from work with Vista (it's in a domain and firewall
    settings are configured by group policy).
    At home I have a XP SP2 machine.

    I'm able to connect with Vista to XP. I tried everything I know, but it
    doesn't work from XP to Vista.

    If I try by UNC or IP I always get "Network Path was not found"

    On Vista machine, the private profile is active at the moment. I tried rules
    with "any port, any profile, etc. with just entering source and destination
    ips" and set it to allow, but doesn't work.

    The firewall log shows dropped stuff:
    #Fields: date time action protocol src-ip dst-ip src-port dst-port size
    tcpflags tcpsyn tcpack tcpwin icmptype icmpcode info path

    2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4256 445 52 S
    3100445053 0 64240 - - - RECEIVE
    2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4258 139 52 S
    3282638340 0 64240 - - - RECEIVE
    2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
    2424182988 0 64240 - - - RECEIVE
    2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
    1652083414 0 64240 - - - RECEIVE
    2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
    2424182988 0 64240 - - - RECEIVE
    2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
    1652083414 0 64240 - - - RECEIVE
    2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
    2424182988 0 64240 - - - RECEIVE
    2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
    1652083414 0 64240 - - - RECEIVE

    Port rules with 139 and 445 set to allow don't work either.

    I also noticed, that the time of the log entries is about 20 minutes ahead
    of the system times of both machines. Don't know where it gets the wrong
    time...



    I'm really sorry for bad english, I apreciate every single try to solve my
    problem

    thanks
    Stefan

      My System SpecsSystem Spec

  2. #2


    Jesper Guest

    RE: Firewall rule created, but firewall drops

    Can you tell us _exactly_ how the rules are configured?

    ---
    Your question may already be answered in Windows Vista Security:
    http://www.amazon.com/gp/product/047...otectyourwi-20


    "FIST" wrote:

    > Hello everyone,
    >
    > I have a Dell Notebook from work with Vista (it's in a domain and firewall
    > settings are configured by group policy).
    > At home I have a XP SP2 machine.
    >
    > I'm able to connect with Vista to XP. I tried everything I know, but it
    > doesn't work from XP to Vista.
    >
    > If I try by UNC or IP I always get "Network Path was not found"
    >
    > On Vista machine, the private profile is active at the moment. I tried rules
    > with "any port, any profile, etc. with just entering source and destination
    > ips" and set it to allow, but doesn't work.
    >
    > The firewall log shows dropped stuff:
    > #Fields: date time action protocol src-ip dst-ip src-port dst-port size
    > tcpflags tcpsyn tcpack tcpwin icmptype icmpcode info path
    >
    > 2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4256 445 52 S
    > 3100445053 0 64240 - - - RECEIVE
    > 2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4258 139 52 S
    > 3282638340 0 64240 - - - RECEIVE
    > 2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
    > 2424182988 0 64240 - - - RECEIVE
    > 2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
    > 1652083414 0 64240 - - - RECEIVE
    > 2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
    > 2424182988 0 64240 - - - RECEIVE
    > 2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
    > 1652083414 0 64240 - - - RECEIVE
    > 2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
    > 2424182988 0 64240 - - - RECEIVE
    > 2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
    > 1652083414 0 64240 - - - RECEIVE
    >
    > Port rules with 139 and 445 set to allow don't work either.
    >
    > I also noticed, that the time of the log entries is about 20 minutes ahead
    > of the system times of both machines. Don't know where it gets the wrong
    > time...
    >
    > I'm really sorry for bad english, I apreciate every single try to solve my
    > problem
    >
    > thanks
    > Stefan


      My System SpecsSystem Spec

Firewall rule created, but firewall drops problems?

Similar Threads
Thread Thread Starter Forum Replies Last Post
Vista Firewall is worse than independent Firewall or not? john Vista security 2 13 Dec 2009
Advice on creating outbound firewall rule homerat System Security 1 27 Dec 2008
Firewall blocks outbound traffic even if outbound rule exists Curt Vista security 21 22 Mar 2007
AVG created rules in Windows Firewall to allow INCOMING connection BillD Vista General 8 07 Dec 2006
Firewall rules: how to get list of allow program through firewall? Manoj Chanchawat, Symantec Corporation. Vista security 1 18 Oct 2006