Post Reply 
Port 0
Mar. 18, 2020, 04:09 PM (This post was last modified: Mar. 19, 2020 05:23 PM by Anno Domini.)
Post: #5
RE: Port 0
Haha I love Kerio 2.1.5 and appreciate you remembering the good times, JJoe. :-) I still use it because of its great outbound control and configurability and because I still have WinXP and Win7. I have searched and searched for another firewall that could alert me like Kerio does when something wants out and the only one I could find close to it is the Comodo 5 series and the versions before. Comodo 5 works on Win7, Kerio 2.1.5 does not. There's also a way to decrease the installation size of Comodo by just installing the firewall and defense+, but we're getting sidetracked.

I took your advice and examined my rules in Kerio 2.1.5 and I don't know if I can explain this because I don't understand it, but I noticed my loopback rule for Proxomitron was UDP outbound only and my alert for Proxomitron trying to connect out on port 0 was for TCP. See attached photos. I blurred some parts for security. My rules are from a ruleset called "BZ Kerio 2x Default Replacement - Advanced - Final." (see attached photo). Note that BZ has a standard and advanced Kerio ruleset. The photo I attached is BZ's advanced rules and the one I use. I don't understand how the proxy loopback works, but after you suggested I double check the local proxy configuration in Kerio, I noticed my loopback rule was UDP out only. So I changed it to UDP + TCP out (see attached photo) like BZ's advanced software proxy loopback rule. Now the alerts from Proxomitron trying to connect out on port 0 with TCP are gone. My firewall now says, "TCP Connection to (null) [127.0.0.1:0] was permitted by rule 'Loopback for Proxy (out)." I don't understand it JJoe, but thank you for leading me to the source. You are a genius, but is this safe. Do you think I opened up a new security hole ?

BZ Kerio 2x Default Replacement Update
https://www.dslreports.com/forum/r802370...ent-Update


Attached File(s)
.jpg  UDP outbound only - Kerio 2.1.5 proxomitron loopback rule .jpg (Size: 70.79 KB / Downloads: 462)
.gif  BZ Kerio 2x Default Replacement - Advanced - Final .gif (Size: 28.28 KB / Downloads: 496)
.jpg  UDP + TCP outbound only - Kerio 2.1.5 proxomitron loopback rule .jpg (Size: 76.12 KB / Downloads: 464)
.jpg  Proxomitron trying to connect out on port 0 with TCP .jpg (Size: 61.09 KB / Downloads: 498)
Add Thank You Quote this message in a reply
Post Reply 


Messages In This Thread
Port 0 - Anno Domini - Mar. 16, 2020, 07:33 PM
RE: Port 0 - JJoe - Mar. 17, 2020, 03:18 AM
RE: Port 0 - Anno Domini - Mar. 17, 2020, 04:08 PM
RE: Port 0 - JJoe - Mar. 18, 2020, 02:31 AM
RE: Port 0 - Anno Domini - Mar. 18, 2020 04:09 PM
RE: Port 0 - JJoe - Mar. 19, 2020, 02:08 AM
RE: Port 0 - Anno Domini - Mar. 19, 2020, 03:36 PM
RE: Port 0 - JJoe - Mar. 20, 2020, 03:12 AM
RE: Port 0 - Anno Domini - Mar. 20, 2020, 02:13 PM
RE: Port 0 - amy - Mar. 21, 2020, 11:52 PM
RE: Port 0 - Anno Domini - Mar. 22, 2020, 02:12 AM
RE: Port 0 - herbalist - Mar. 22, 2020, 11:51 AM
RE: Port 0 - Anno Domini - Mar. 22, 2020, 10:55 PM
RE: Port 0 - Anno Domini - May. 31, 2020, 02:51 PM
RE: Port 0 - amy - Jun. 03, 2020, 12:41 AM
RE: Port 0 - Anno Domini - Jun. 03, 2020, 04:28 AM
RE: Port 0 - amy - Jun. 07, 2020, 02:55 AM
RE: Port 0 - Anno Domini - Jun. 07, 2020, 03:37 PM

Forum Jump: