Windows firewall not blocking port

yonatan748

New member
Local time
4:52 PM
Messages
4
Hi

I need to block a specific UDP port both inbound and outbound. I have tried using Windows 7 firewall for this, but oddly it is not capable of blocking the port. I have been very meticulous with the firewall settings creating an inbound and outbound rule, but still it lets traffic through.

As a comparison I downloaded Comodo firewall, disabled Windows firewall and created the same rule blocking in/out UDP port. Comodo blocks traffic in both directions without an issue!

I know that I could stick with Comodo, but I'm curious if anyone knows why Windows firewall is failing.

Btw I used Wireshark to be certain that traffic was being blocked.

Thanks
 

My Computer

OS
Windows 7 32bit

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio
Great info Jacee! :)
 

My Computer

Computer Manufacturer/Model Number
Toshiba Satellite
OS
Windows 7 Home Premium 64-bit
CPU
Pentium(R) Dual-Core T4300 @ 2.10GHz
Motherboard
Toshiba Model KSWAA - Chipset Intel GL40 Rev 07
Memory
3 GB DDR2 PC2-6400 (400 MHz) Samsung M4 70T2864Q23-CF7
Graphics Card(s)
Mobile Intel GMA4500M 32bit OS (64bit OS) dynamically
Sound Card
Realtek ALC272-GR Software Sound
Monitor(s) Displays
16.0" HD TFT with TrueBrite Matrix colour LCD display
Screen Resolution
1366 x 768
Hard Drives
FUJITSU MJA2320BH G2-(S2) 320GB (5400RPM) Serial-ATA
Keyboard
Canadian Bilingual Keyboard 105 keys with 13 Function keys
Mouse
Touchpad Point device & Lexma USB Mouse
Internet Speed
Walking is Faster
Other Info
Wireless LAN Realtek RTL89191SE 802.11n PCI-E NIC + a
LAN Realek PCIe FE Family Controller and
TOSHIBA Software Modem
So you added a in-bound and out-bound block for certain UDP port numbers in Windows firewall. However, your computer's installed traffic sniffer still picks it data from those ports?

Whatever port this is, I assume you have a program that uses the port(s) you want blocked? Is this program running and added into the permit list of Windows Firewall? If this is the case, your program's permit rule could be overriding the block rule(s) you added.

Also, for a more accurate picture, run the wire shark tool on a different computer.

Hi

I need to block a specific UDP port both inbound and outbound. I have tried using Windows 7 firewall for this, but oddly it is not capable of blocking the port. I have been very meticulous with the firewall settings creating an inbound and outbound rule, but still it lets traffic through.

As a comparison I downloaded Comodo firewall, disabled Windows firewall and created the same rule blocking in/out UDP port. Comodo blocks traffic in both directions without an issue!

I know that I could stick with Comodo, but I'm curious if anyone knows why Windows firewall is failing.

Btw I used Wireshark to be certain that traffic was being blocked.

Thanks
 

My Computer

Computer Manufacturer/Model Number
HP DV6 1330sa
OS
Windows 7 Professional 64 Bit SP1
CPU
INTEL DUAL CORE 2.1Ghz
Motherboard
N/A
Memory
4GB DDR3
Graphics Card(s)
INTEL
Sound Card
LAPTOP
Monitor(s) Displays
2
Screen Resolution
3200x1080
Hard Drives
250GB
PSU
LAPTOP
Case
LAPTOP
Cooling
LAPTOP
Keyboard
SOLID YEAR 260U
Mouse
USB
Internet Speed
20 MB/S

My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Bruce ... somewhere in his 40's
OS
Windows 7 Ultimate 32bit SP1
CPU
Intel(R) Core(TM)2 Quad CPU @ 2.40GHz, 2400 MHz
Motherboard
INTEL/D975XBX2
Memory
4 GB
Graphics Card(s)
ATI Radeon HD 2600 Pro
Monitor(s) Displays
Samsung SyncMaster 914v
Screen Resolution
1280 x 1024
Hard Drives
2/500GB each ... ST3500630AS ATA Device.
One is not connected
PSU
Rocketfish 700 W
Case
G.Skill Gigabyte Chassis
Keyboard
Standard PS/2 Keyboard
Mouse
Microsoft PS/2 Mouse
Internet Speed
DSL
Antivirus
Avira Internet Security
Browser
IE 11
Other Info
ATI HDMI Audio

  1. Note: You can prevent outbound traffic by selecting Outbound Rules.
That tutorial is kinda mis-leading for outbound. It's my understanding that Outbound would have to be enabled. One can create as many outbound rules as you'd like but without enabling it means very little with outbound being allowed by default. But, I may be the one mis-understanding,lol.
 

My Computer

Computer Manufacturer/Model Number
Averatec 6130HS-20
OS
Windows 7 Professional 32-bit (6.1, Build 7600)
CPU
Intel(R) Pentium(R) 4 3.00 GHz HT
Memory
2.0 GB
Graphics Card(s)
ATI Mobility Radeon 9600 64MB
Sound Card
Realtek AC'97 Audio
Screen Resolution
1280 x 800
Hard Drives
Seagate 96023A 60GB 7200RPM -
Seagate FreeAgentDesktop 250GB
Cooling
20 Inch Box Fan
Mouse
Targus PAWM10 Wireless Optical Laptop Mouse
OK that's for all the suggestions, but I have just tried to block again and used another computer with wireshark and it is still letting traffic through! My opinion on this is that Windows firewall is flawed or not as robust as it should be. I've followed the links that you posted Jacee to make sure that I was doing it right (and I was) and still no go.

I guess I will use Comodo firewall as it behaves properly.

Thanks
 

My Computer

OS
Windows 7 32bit
So you added a in-bound and out-bound block for certain UDP port numbers in Windows firewall. However, your computer's installed traffic sniffer still picks it data from those ports?

Whatever port this is, I assume you have a program that uses the port(s) you want blocked? Is this program running and added into the permit list of Windows Firewall? If this is the case, your program's permit rule could be overriding the block rule(s) you added.

Also, for a more accurate picture, run the wire shark tool on a different computer.

I checked and the program was not checked in the permit list! Regarding wireshark I just tried sniffing from a different computer and applying the firewall on the other one and wireshark still detects the traffic.

Also see my reply above. Thanks
 

My Computer

OS
Windows 7 32bit
Back
Top