Great free firewall
- YeOldeStonecat
- SG VIP
- Posts: 51171
- Joined: Mon Jan 15, 2001 12:00 pm
- Location: Somewhere along the shoreline in New England
Great free firewall
I've mentioned it a few times...but never really got into it
Comodo
http://www.personalfirewall.comodo.com/
Supported..(unlike most of the other free ones which have stopped development/support after being bought out).
Matter of fact, version 2 was recently released.
Several writeups have shown it to perform very well in leak tests, and stealthing.
A little naggy when you first install it..asking this and that, like most software firewalls. But it does have a large database of "safe" programs..and if you have it scan your system for install software first..it cuts down on those first several days of nagginess.
Default settings are fine, and you can roll up your sleeves and get really advanced with it too.
Comodo
http://www.personalfirewall.comodo.com/
Supported..(unlike most of the other free ones which have stopped development/support after being bought out).
Matter of fact, version 2 was recently released.
Several writeups have shown it to perform very well in leak tests, and stealthing.
A little naggy when you first install it..asking this and that, like most software firewalls. But it does have a large database of "safe" programs..and if you have it scan your system for install software first..it cuts down on those first several days of nagginess.
Default settings are fine, and you can roll up your sleeves and get really advanced with it too.
MORNING WOOD Lumber Company
Guinness for Strength!!!
Guinness for Strength!!!
- mnosteele52
- Posts: 11913
- Joined: Tue Jul 24, 2001 12:00 pm
- Location: Chesapeake, VA
- YeOldeStonecat
- SG VIP
- Posts: 51171
- Joined: Mon Jan 15, 2001 12:00 pm
- Location: Somewhere along the shoreline in New England
Haven't tried their AV or spam filter..but going to try their backup utility.
Comodo hovered between 25 - 29 megs on a fresh install (I don't know if that goes up much once it "learns" your system and builds up the ruleset), that system was a 512 megger, 1.2 GHz rig.
I'd seen it mentioned a few times over at Wilders..seems to be liked by the few who know about it.
Comodo hovered between 25 - 29 megs on a fresh install (I don't know if that goes up much once it "learns" your system and builds up the ruleset), that system was a 512 megger, 1.2 GHz rig.
I'd seen it mentioned a few times over at Wilders..seems to be liked by the few who know about it.
MORNING WOOD Lumber Company
Guinness for Strength!!!
Guinness for Strength!!!
Thanks Yosc.. i'll check it out..YeOldeStonecat wrote:I've mentioned it a few times...but never really got into it
Comodo
http://www.personalfirewall.comodo.com/
Supported..(unlike most of the other free ones which have stopped development/support after being bought out).
Matter of fact, version 2 was recently released.
Several writeups have shown it to perform very well in leak tests, and stealthing.
A little naggy when you first install it..asking this and that, like most software firewalls. But it does have a large database of "safe" programs..and if you have it scan your system for install software first..it cuts down on those first several days of nagginess.
Default settings are fine, and you can roll up your sleeves and get really advanced with it too.

_______________________________________________
Vendor neutral certified in IT Project Management, IT Security, Cisco Networking, Cisco Security, Wide Area Networks, IPv6, IT Hardware, Unix, Linux, and Windows server administration
[SIGPIC][/SIGPIC]
Vendor neutral certified in IT Project Management, IT Security, Cisco Networking, Cisco Security, Wide Area Networks, IPv6, IT Hardware, Unix, Linux, and Windows server administration
[SIGPIC][/SIGPIC]

- YARDofSTUF
- Posts: 70006
- Joined: Sat Nov 11, 2000 12:00 am
- Location: USA
Not good for my torrent downloads.
It has only 3 settings to choose - Block all, Custom and Allow all.
At Custom, it has no options to port forward, and even though I have identified my torrent client as a trusted application, more than half of incoming packets from peers get blocked off and a 30-40% rise in consumption of CPU load by its process "cpf".
I have to set Comodo to Allow all when I run torrents to avoid this problem.
It has only 3 settings to choose - Block all, Custom and Allow all.
At Custom, it has no options to port forward, and even though I have identified my torrent client as a trusted application, more than half of incoming packets from peers get blocked off and a 30-40% rise in consumption of CPU load by its process "cpf".
I have to set Comodo to Allow all when I run torrents to avoid this problem.
- YARDofSTUF
- Posts: 70006
- Joined: Sat Nov 11, 2000 12:00 am
- Location: USA
http://www.wilderssecurity.com/showthread.php?t=145704trogers wrote:Not good for my torrent downloads.
It has only 3 settings to choose - Block all, Custom and Allow all.
At Custom, it has no options to port forward, and even though I have identified my torrent client as a trusted application, more than half of incoming packets from peers get blocked off and a 30-40% rise in consumption of CPU load by its process "cpf".
I have to set Comodo to Allow all when I run torrents to avoid this problem.
Starting at Post #4.
Thanks for the link, YoS.
Followed the post but had to add an additional network control rule:
Allow ICMP in - any source - destination LAN IP of comp - criteria where ICMP message is any.
Note: this is allowed in only and not out as you do not want your comp to send out responses to ICMP pings of probes.
- YARDofSTUF
- Posts: 70006
- Joined: Sat Nov 11, 2000 12:00 am
- Location: USA
I am still testing. Presently finishing a few slow torrents so would not know if I can achieve max speed with well-seeded ones till later.YARDofSTUF wrote:So with those additions it works fine now? I've recommended Comodo a bunch of times, lol.
Made adjustments to network control rules and observed the activity logs and that is how I found out the need to allow in ICMP pings as well.
Will let you know in a few days after testing the settings.
Network Control Rules in Comodo for Torrent Clients
Hi, YoS
Here is the latest outcome of my testing.
I had to add the following Network Control Rules to get BitComet version 0.86 to work through Comodo personal Firewall:
1. Allow In TCP or UDP to a Port Range (Listening Forward Port same as the one used in the router)
2. Allow all ICMP pings for both In and Out
3. Allow In TCP or UDP to Destination Port 80
With these additional network control rules, My torrents can download normally under the 'Custom' setting.
- YARDofSTUF
- Posts: 70006
- Joined: Sat Nov 11, 2000 12:00 am
- Location: USA
-
- New Member
- Posts: 4
- Joined: Wed May 23, 2007 7:45 am
other precautions
what are the other precautions i ve to keep in mind while using this???
like windows firewall have to be turned off while using this one... please direct...
like windows firewall have to be turned off while using this one... please direct...
- YARDofSTUF
- Posts: 70006
- Joined: Sat Nov 11, 2000 12:00 am
- Location: USA
- jeremyboycool
- Posts: 5042
- Joined: Sun Apr 08, 2001 12:00 am
- Location: Montana
- YARDofSTUF
- Posts: 70006
- Joined: Sat Nov 11, 2000 12:00 am
- Location: USA
- mnosteele52
- Posts: 11913
- Joined: Tue Jul 24, 2001 12:00 pm
- Location: Chesapeake, VA
- jeremyboycool
- Posts: 5042
- Joined: Sun Apr 08, 2001 12:00 am
- Location: Montana
- YARDofSTUF
- Posts: 70006
- Joined: Sat Nov 11, 2000 12:00 am
- Location: USA
- jeremyboycool
- Posts: 5042
- Joined: Sun Apr 08, 2001 12:00 am
- Location: Montana
Blocking Ports in Comodo
Thanks for the tip on Comodo. It appears to be a great program.
I found speedguide.net when I realized that Port 8080 was wide open. Comodo helpd me to block (or filter it) with a rule. I haven't done a complete scan... yet. Researching other vulnerable ports.
I found speedguide.net when I realized that Port 8080 was wide open. Comodo helpd me to block (or filter it) with a rule. I haven't done a complete scan... yet. Researching other vulnerable ports.