10-23-2010 01:45 PM
I posted a note to the "false positve" area, which is likely the wrong place, BUT how else can you define the fact that, by default, NIS 2010 firewall, installed on my Windows 7 64-bit system AUTOMATICALY (BY DEFAULT) BLOCKS UPDATES?!
(Note: if this already is fixed, please let me know, and point me in the right direction - thanks)
It is purely ridiculous and needs a simple fix. I've looked around, and one Microsoft MVP suggested created some 'bypass rule' to allow %windir%\system32\svchost.exe to have access both inbound & outbound on ports 443 & 80, but it should NOT BE THAT COMPLICATED! Why on earth is Norton, by default, BLOCKING *NECESSARY/MANDATORY* WINDOWS UPDATES?!
This should be a HUGE COMPLAINT AND "FAQ" item! It should have a *SIMPLE* setting, much like when we do "trusted sites" in IE, we say, "Allow *.updates.microsoft.com" (or along those lines) and we simply add/allow those certain sites as 'trusted sites.'
*FEATURE SUGGESTIONS BELOW*
EVEN BETTER: Have Norton [COMMUNICATE] with IE, Firefox, etc. and say, "Oh, you have added "http://*.updates.microsoft.com" as 'trusted site," therfore, I will craft the proper rule to allow that group of sites to download updates to your computer" (that would be a summary of one way to describe how Norton might interact with other areas in which we already have listed certain 'trusted' entites).
Alternatively, allow a set of "simple rules" - i.e., Allow "http://*.updates.microsoft.com" inbound, ports 443 & 80."
As it stands, you force us to enter IP addresses for traffic & program rules, but IP addresses often change, so we need to be able to enter DNS names, such as "updates, microsoft.com" and even wildcards when necessary, because MS may add ANOTHER update host to their array of curent update hosts. Maybe this feature already is available on Norton 2010, but I have yet to find it.
FYI, when I turn off Norton firewall, Microsoft/Windows Updates run PERFECTLY; but when on, I get the infamous error:
"80072EFD - windows update encountered an unknown error."
Someone PLEASE point me in the right direction and let me know the fix for this! Thanks in advance.
10-23-2010 02:00 PM - last edited on 10-23-2010 02:08 PM
Hi tnjman,
Norton does not block update.microsoft.com or any other site by default. Something else is definitely going on with your system. First, try resetting the Norton Firewall, which can be found in the Network Settings, Firewall Advanced Settings. If you still cannot connect to Microsoft Update you will need to start troubleshooting other possibilities, such as malware blocking access to such sites, or browser settings that block connectivity to some sites.
Many things can cause the error you are seeing. Check this Microsoft KB article for information and troubleshooting tips:
http://support.microsoft.com/kb/836941
10-23-2010 02:23 PM
Hello tnjman
Welcome to the Norton Community Forum
Since you are referring to the program as Norton Security Suite 2010, are you referring to Comcast Norton Security Suite 2010? If you are, did you thoroughly remove McAfee first by using add/remove and then the McAfee removal tool before you downloaded and installed Comcast Norton Security Suite?
Or do you have Norton Internet Security 2010, commonly called NIS 2010? What is the version number that you have installed please?
Success always occurs in private and failure in full view.
10-23-2010 02:54 PM
Apparently you did not "READ" my message - I said, "WITH Norton firewall TURNED OFF" it works GREAT!
so, exaclty WHAT part of that did you fail to understand?
I has ZERO to do with any malware, it is Norton - plain and simple.
but, if you want to try to go double-or nothing in Final Jeopardy, be my guest.
10-23-2010 02:58 PM
It is the 'Comcast' version - here are the details (and, again, with the firewall piece turned OFF, updates work great!)
Product Name: Norton Security SuiteVersion: 4.2.0.12
Media SKU: 20999865
Current SKU: 20999865
End Point ID: {5A9388BC-C39F-11DF-8DCE-00262D5D8F17} OEM
Vendor Name: Comcast
Thanks for any info!
10-23-2010 03:06 PM
Woah! No need to go hostile! We are trying to help you.
Did you try resetting the firewall as allen m says. Go to settings-->Network settings-->reset firewall:
Plus, other programs security programs/previous security programs may interfer with the function of Norton. What PREVIOUS security program did you have? Plus, as long as I know, comcast security suite is a rebranded Norton 360 so we may not be familiar with your program.
10-23-2010 03:08 PM
OOPS!
I have to subtract "one point" from you - because you asked a totally 'unrelated' question: "Did I remove McAfee?"
I never stated that I ever HAD McAfee. I had nothing to remove.
Since Norton was installed, I have had Windoes firewall disabled. I've never had any other firewall or AV products on my system.
This is a LONG-STANDING issue; and I find stuff out there from 2 years ago and even longer, where people had similar issues - as I said, the one MVP person even suggested creating a "bypass rule" in Norton; and he had same symptoms: "i.e., no Norton = updates run great." That particular person was using Norton 2008, and it has some different options - he mentioned go to "Advanced, General, etc. - and create the rule for %windir%\svchost.exe"
Thanks again for any and all info - even info that doesn't relate - all of it is part of the troubleshooting process.
Norton f/w OFF = Windows Updates run great.
Norton f/w ON = That error that I posted in the initial note - and updates do not run.
It really is THAT simple.
10-23-2010 03:08 PM
Thx. Not "hostile," just frustrated. Apologies.
10-23-2010 03:10 PM
Umm... we are all different people. Different user name= different users.
Plus, did you try resetting the firewall rules?
What PREVIOUS Norton products did you have?
10-23-2010 03:10 PM
I guess I'm curious why "resetting" the firewall would do anything?
If f/w is blocking now, it will block after I reset it.
Will try that, since I have to reboot. Thx!!