Windows Vista Forums
Vista Forums Home Join Vista Forums Windows 7 Forum Vista Tutorials Tags
Welcome to Windows Vista Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows Vista. The Vista forum also covers news and updates and has an extensive Windows Vista tutorial section that covers a wide range of tips and tricks.

Go Back   Vista Forums > Vista Newsgroups > Vista security

Vista - Firewall rule created, but firewall drops

Reply
 
Old 04-15-2007   #1 (permalink)
FIST


 
 

Firewall rule created, but firewall drops

Hello everyone,

I have a Dell Notebook from work with Vista (it's in a domain and firewall
settings are configured by group policy).
At home I have a XP SP2 machine.

I'm able to connect with Vista to XP. I tried everything I know, but it
doesn't work from XP to Vista.

If I try by UNC or IP I always get "Network Path was not found"

On Vista machine, the private profile is active at the moment. I tried rules
with "any port, any profile, etc. with just entering source and destination
ips" and set it to allow, but doesn't work.

The firewall log shows dropped stuff:
#Fields: date time action protocol src-ip dst-ip src-port dst-port size
tcpflags tcpsyn tcpack tcpwin icmptype icmpcode info path

2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4256 445 52 S
3100445053 0 64240 - - - RECEIVE
2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4258 139 52 S
3282638340 0 64240 - - - RECEIVE
2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
2424182988 0 64240 - - - RECEIVE
2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
1652083414 0 64240 - - - RECEIVE
2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
2424182988 0 64240 - - - RECEIVE
2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
1652083414 0 64240 - - - RECEIVE
2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
2424182988 0 64240 - - - RECEIVE
2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
1652083414 0 64240 - - - RECEIVE

Port rules with 139 and 445 set to allow don't work either.

I also noticed, that the time of the log entries is about 20 minutes ahead
of the system times of both machines. Don't know where it gets the wrong
time...

I'm really sorry for bad english, I apreciate every single try to solve my
problem

thanks
Stefan

My System SpecsSystem Spec
Old 04-16-2007   #2 (permalink)
Jesper


 
 

RE: Firewall rule created, but firewall drops

Can you tell us _exactly_ how the rules are configured?

---
Your question may already be answered in Windows Vista Security:
http://www.amazon.com/gp/product/047...otectyourwi-20


"FIST" wrote:

> Hello everyone,
>
> I have a Dell Notebook from work with Vista (it's in a domain and firewall
> settings are configured by group policy).
> At home I have a XP SP2 machine.
>
> I'm able to connect with Vista to XP. I tried everything I know, but it
> doesn't work from XP to Vista.
>
> If I try by UNC or IP I always get "Network Path was not found"
>
> On Vista machine, the private profile is active at the moment. I tried rules
> with "any port, any profile, etc. with just entering source and destination
> ips" and set it to allow, but doesn't work.
>
> The firewall log shows dropped stuff:
> #Fields: date time action protocol src-ip dst-ip src-port dst-port size
> tcpflags tcpsyn tcpack tcpwin icmptype icmpcode info path
>
> 2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4256 445 52 S
> 3100445053 0 64240 - - - RECEIVE
> 2007-04-15 11:43:39 DROP TCP 10.11.12.57 10.11.12.53 4258 139 52 S
> 3282638340 0 64240 - - - RECEIVE
> 2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
> 2424182988 0 64240 - - - RECEIVE
> 2007-04-15 11:44:12 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
> 1652083414 0 64240 - - - RECEIVE
> 2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
> 2424182988 0 64240 - - - RECEIVE
> 2007-04-15 11:44:15 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
> 1652083414 0 64240 - - - RECEIVE
> 2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4262 445 52 S
> 2424182988 0 64240 - - - RECEIVE
> 2007-04-15 11:44:21 DROP TCP 10.11.12.57 10.11.12.53 4264 139 52 S
> 1652083414 0 64240 - - - RECEIVE
>
> Port rules with 139 and 445 set to allow don't work either.
>
> I also noticed, that the time of the log entries is about 20 minutes ahead
> of the system times of both machines. Don't know where it gets the wrong
> time...
>
> I'm really sorry for bad english, I apreciate every single try to solve my
> problem
>
> thanks
> Stefan

My System SpecsSystem Spec
Reply

Thread Tools


Similar Threads
Thread Forum
Advice on creating outbound firewall rule System Security
After installing Windows6.0-KB938194-x64, and Windows6.0-KB938979-x64 Kaspersky, jetico firewall, and kerio firewall crash system. Vista General
Firewall blocks outbound traffic even if outbound rule exists Vista security
AVG created rules in Windows Firewall to allow INCOMING connection Vista General
Firewall rules: how to get list of allow program through firewall? Vista security


Vista Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows Vista", the Start Orb, and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46