 Blue2Premium join:2004-04-14 France kudos:1 | reply to Blue2
Re: Firewall questions - DNS connections attempts Sorry if I haven't been clear.
I don't actually connect to the internet (plug in the network cable) until AFTER the computer has not only booted but shows that the firewall is active. From the old kerio forum, there was some question about when the firewall driver loads in the startup sequence so it was advised to not connect until it displays.
The cable modem/router is in a different room (but via a wired connection), so it's possible that I'm plugging in the network cable and the cable modem/router (Castlenet Router- CBV734EW) has NOT yet completed ITS startup yet.
What's happening is that occassionally, but not always, and only when I first plug in the network cable, do I see the kerio DNS alerts per my second post above, via the rule that I did set up to alert me to unwanted DNS connections. So these appear to be outbound attempts from KAV and Kerio to the DHCP server address via outbound local ports to port 53.
So I wasn't sure what this blocked traffic was and if it indicated a problem or required further investigation. There were about 50 such attempts in the first 3 minutes that the network cable was plugged in and then they stop. This is the second time that I've seen this.
Does that make it any clearer? |
 TheWiseGuyDog And ButterflyPremium,MVM join:2002-07-04 Yonkers, NY kudos:1 Reviews:
·Optimum Online
1 edit | Certainly makes it clearer. Is the Default Gateway where these packets are sent, the computer Default Gateway or the router Default Gateway?
Is the Modem/Router being used as a router?
Are you using one of the large Hosts files to block sites?
-- Warning, If you post nonsense and use misinformation and are here to argue based on those methods, you will be put on ignore. |