| View previous topic :: View next topic |
| Author |
Message |
LoPhatPhuud
Security Expert Microsoft MVP
 Joined: Mar 09, 2002 Posts: 2232
|
Posted: Fri Jan 06, 2006 2:37 am Post subject: Laptop problem w/Kerio v4 |
|
|
I have a strange problem with my wife's laptop and Kerio v4. I just installed the trail on it today and cannot get any web page to display with the Network Security running. My desktop, also running Kerio v4 but connected via ethernet runs without issue.
The laptop is wireless and each time I boot a new trusted area is added. The IP is 169.254.0.0/255.255.255.0 which is the MS default for no connection. But that is not true, the wireless connection is on. THere is also the valid trusted address of 192.168.1.0/255.255.255.0 I get an IP Address (192.168.1.103) and all status indicators are positive.
WHen I open the browser (IE or FF) I get the looking up message, connecting message, then nothing. No pages displays. A check of router logs shows the outgoing connect and the response. The firewall logs show nothing.
If I turn off Network protection, I can communicate normally. Obviously the issue is the firewall, but I cannot figure this one out.
Kerio 2.1.5 ran normally, and I have imported the ruleset from there. It checks out fine.
I wonder if the problem has to do with wireless connection. The ethernet connection is disabled. _________________ Duct tape is like the Force. It has Light side and a Dark side and it holds the world together.
Microsoft MVP/Consumer Security 2005-2008
|
|
| Back to top |
|
 |
Paul
CastleCops Founder
 Joined: Feb 22, 2002 Posts: 27351
|
Posted: Fri Jan 06, 2006 2:53 am Post subject: |
|
|
I tried this out myself and seem to recall it working, but the laptop is back in for repair (free this time). I should be getting it back tomorrow and then I can confirm. _________________ Paul Laudanski - http://www.laudanski.com
http://www.linkedin.com/pub/1/49a/17b
|
|
| Back to top |
|
 |
LoPhatPhuud
Security Expert Microsoft MVP
 Joined: Mar 09, 2002 Posts: 2232
|
Posted: Fri Jan 06, 2006 3:26 am Post subject: |
|
|
Thanks Paul,
This is really vexing me. First, I made sure the the Windows XP Firewall was off. I have checked all the TCP/IP settings and they match the desktop. Ipconfig shows the correct IP address and the correct Comcast servers. Router shows the outbound connections to TCP port 53 and 80.
Time to download and install wntipcfg from MS. I prefer it for checking and wil ltry release and renew the IP address.
I just removed the FW, rebooted, confirmed all bits and pieces are gone, then re-installed. Same results. _________________ Duct tape is like the Force. It has Light side and a Dark side and it holds the world together.
Microsoft MVP/Consumer Security 2005-2008
|
|
| Back to top |
|
 |
Paul
CastleCops Founder
 Joined: Feb 22, 2002 Posts: 27351
|
|
| Back to top |
|
 |
LoPhatPhuud
Security Expert Microsoft MVP
 Joined: Mar 09, 2002 Posts: 2232
|
Posted: Fri Jan 06, 2006 4:14 am Post subject: |
|
|
One item to add. The wireless connection is encrypted with WPA/TKIP. I would expect that to be transparent and Kerio 2.1.5 offered no problems. _________________ Duct tape is like the Force. It has Light side and a Dark side and it holds the world together.
Microsoft MVP/Consumer Security 2005-2008
|
|
| Back to top |
|
 |
Graham1
Captain

 Joined: Dec 21, 2005 Posts: 340
|
Posted: Fri Jan 06, 2006 10:15 pm Post subject: |
|
|
Which anti-virus software is your wife running? If Kaspersky, this can cause problems with the network security module enabled. SKPF4 should work fine with a wireless connection (with WPA/TKIP).
You could try exporting your configuration (as backup) and then delete kpf.cfg and kpf.cfg.bak within Sunbelts Config folder (this will reset SKPF4 to it's default setup) and then try browsing.

|
|
| Back to top |
|
 |
Paul
CastleCops Founder
 Joined: Feb 22, 2002 Posts: 27351
|
|
| Back to top |
|
 |
LoPhatPhuud
Security Expert Microsoft MVP
 Joined: Mar 09, 2002 Posts: 2232
|
Posted: Sat Jan 07, 2006 12:29 am Post subject: |
|
|
No hurry Paul, I know what the issue is now.
First, the computers and OS + configurations.
#1: Desktop - P4, 3.6ghz - 1000K NIC - Win XP Pro (MCE)
#2: Laptop - P4, 3.0ghz - 100K NIC, 802.11G Wireless, Win XP Pro
Both run KAV 5.0, with Network Attack Protection disabled
Desktop has no communication issues.
Laptop times out connecting.
Router logs show laptop communicating.
When I first installed Kerio v4.2.3, I checked the Network Securtiy, Trusted area tab. The Loopback was there, as was 169.254.0.0!!! That is the MS default for a disconnected NIC that is not disabled but it showed the adapter as Wireless? I changed the address to 192.168.1.103 which was the DHCP assigned address.
After boot this afternoon, the 169.254.0.0 adaptor was back!
This afternoon, I downloaded wntipcfg from MS to check the adapter. I only showed the LAN NIC (Realtek)????
Kerio v4 sees the wireless adapter (at least I think it does) but for some strange reason believes that it is not connected. That or it is only seeing the Realtek LAN NIC. In either case, I get no internet. ALso the LAN is dead. I cannot see the laptop from my desktop.
Removed Kerio v4 and installed Kerio v2.1.5. It sees the wireless adapter and connects without issue???? So back to square one and Kerio 2.1.5.
Note: wntipcfg issue is strange, but not to far out. This is an old NT program, but its great for local use. IPconfig works fine and shows both adapters. LAN as media disconnected, wireless with all the correct info.
Now for Paul...
When you get your laptop back, check the status of both your lan and wireless adapters. It may be jsut be my wife's hardware, but it would be interested to see what happens if both are active. _________________ Duct tape is like the Force. It has Light side and a Dark side and it holds the world together.
Microsoft MVP/Consumer Security 2005-2008
|
|
| Back to top |
|
 |
LoPhatPhuud
Security Expert Microsoft MVP
 Joined: Mar 09, 2002 Posts: 2232
|
Posted: Sat Jan 07, 2006 12:33 am Post subject: |
|
|
I'll wait for some responses to my last post. But my next step would be to disable the LAN nic in Device Manager, reboot, then re-install Kerio v4 and see what happens then.
Since the laptop would be used with a wireless connection (at least in the foreseeable future), disabling the LAN NIC is a viable option. _________________ Duct tape is like the Force. It has Light side and a Dark side and it holds the world together.
Microsoft MVP/Consumer Security 2005-2008
|
|
| Back to top |
|
 |
aywitb
Guest IP: 65.92.*.*
|
Posted: Tue Jan 31, 2006 4:47 pm Post subject: So was this fixed? |
|
|
Im having the exact same issue......
|
|
| Back to top |
|
 |
fishbert
Cadet

 Joined: Feb 08, 2006 Posts: 3 Location: USA
|
Posted: Wed Feb 08, 2006 6:11 am Post subject: |
|
|
Has there been any resolution/progress with this issue?
I have the same problem (the 165.whatever trusted area part too).... so long as "Enable Network security module" is checked, I can't even see my router the PC's plugged into.
Part of my reasons for giving Sunbelt Kerio 4 a try is how simple and effective I've heard it is. I wasn't expecting to be banging my head against the wall this much just to get the thing working properly in an initial, basic fashion.
[update...]
I just installed Kerio 4.2.2 (from www.kerio.com), and it's working much better (as in: "I CAN DO STUFF! HUZZAH!!!").
So.... whatever it was that hosed the program for myself and others in this thread happened between Kerio.com's 4.2.2 and Sunbelt's 4.2.3
Don't know if that helps any, but I would absolutely love to hear about this problem being licked (soon) with Sunbelt's product.
|
|
| Back to top |
|
 |
LoPhatPhuud
Security Expert Microsoft MVP
 Joined: Mar 09, 2002 Posts: 2232
|
Posted: Thu Feb 09, 2006 2:13 am Post subject: |
|
|
me too and the issue with Adobe CS2 that I have in another thread. _________________ Duct tape is like the Force. It has Light side and a Dark side and it holds the world together.
Microsoft MVP/Consumer Security 2005-2008
|
|
| Back to top |
|
 |
Paul
CastleCops Founder
 Joined: Feb 22, 2002 Posts: 27351
|
|
| Back to top |
|
 |
fishbert
Cadet

 Joined: Feb 08, 2006 Posts: 3 Location: USA
|
Posted: Sun Mar 05, 2006 6:51 pm Post subject: |
|
|
Once again.....
any progress on this issue?
|
|
| Back to top |
|
 |
fishbert
Cadet

 Joined: Feb 08, 2006 Posts: 3 Location: USA
|
Posted: Wed Mar 08, 2006 6:19 am Post subject: |
|
|
... I guess not.
Well, I have 1 day left on my trial of Kerio 4.2.2, and I'd really like to move to 4.2.3 from Sunbelt. But I'm not too inclined to give someone my money if their product breaks my connectivity. Having to poke the forum with a stick to remind an Admin that there are people waiting for an update isn't a big selling point, either.
|
|
| Back to top |
|
 |
|
|