Spoolsv.exe outbound UDP port 53 connection solved!

I and many others have wondered why this is allowed in NIS2011. I know of no reason why spoolsv.exe should be using DNS. Certainly not a local connected printer and even if a network printer, only TCP outbound to the printer IP address should be allowed. I lived with it all these months since I was bombarded with firewall log messages at boot time if I blocked it.

 

So yesterday I decided to take a detailed look at what protcols were set on in the "Uncommon Protocol" section of the firewalls Network Setting. OMG! 160 protocols set on by default. Yeah, I read the Help write up on how the SMART firewall auto controls these protocols. Sorry, I don't buy it especially as it applies to oubound connections. So I left on the protocols I need or thought I might need and turned off all the rest.

 

Today I boot up and guess what? No spoolsv.exe attempted outbound connection period. My HP Laser works file. Spoolsv.exe is running in Task Manager. Zip issues.

 

One of 160 "uncommon protocols" was causing spoolsv.exe to "dial out". Which one I don't know or care at this point.

 

I will say I have never trusted HP drivers.  I will reserve comment on why all those "Uncommon Protocols" are enabled.