1. You are viewing our forum as a guest. For full access please Register. WindowsBBS.com is completely free, paid for by advertisers and donations.

Windows Firewall doesn't start on startup

Discussion in 'Windows XP' started by danep, 2005/11/18.

  1. 2005/11/18
    danep

    danep Inactive Thread Starter

    Joined:
    2005/11/18
    Messages:
    6
    Likes Received:
    0
    Yesterday I uninstalled ZoneAlarm with no problems, and decided to go with the built-in SP2 Firewall, because I thought it would be simpler and take up less resources. Big mistake, it turns out.

    The firewall works fine when I enable it and for as long as I keep my compy on, but whenever I restart, Security Center pops up and says "No firewall detected "; when I check, Windows Firewall is in fact enabled but NOT protecting my LAN connection (under the Advanced tab, the little box next to "Local Area Network" is unchecked). So I click the box next to Local Area Network, and everything works fine until I restart again. Rinse and repeat.

    I have the latest update of McAfee/Spybot/Ad-aware/Windows Update. I've checked services.msc to confirm that the "Windows Firewall/ICS" service is set to Automatic and actually running.

    Any ideas what might be causing this?
     
  2. 2005/11/18
    PeteC

    PeteC SuperGeek Staff

    Joined:
    2002/05/10
    Messages:
    28,896
    Likes Received:
    389
    danep - Welcome to the Board :)

    When Zone Alarm is installed it turns off Windows Firewall - MS do not recommend running 2 firewalls concurrently.

    My best guess is that a remnant of Zone Alarm is still active and is shutting off the Windows Firewall on start up.

    Download RegSeeker and search the registry for 'zonelabs' or 'zone labs'. Ensure that the 'Back up before deletion' box is checked and delete the strings found. A reboot may be necessary.
     

  3. to hide this advert.

  4. 2005/11/18
    Welshjim

    Welshjim Inactive

    Joined:
    2002/01/07
    Messages:
    5,643
    Likes Received:
    0
    danep--Uninstalling Zone Alarm can be a problem and there are detailed instructions for doing it, BUT
    I would rather suggest that you reinstall ZoneAlarm (if you can) and then shut off Windows Firewall. Windows Firewall monitors only incoming traffic, but does nothing about monitoring outgoing traffic. ZA monitors both.
    If you are successful in reinstalling ZA, then turn off Windows Firewall from Control Panel|Windows Firewall. MS is correct that you should only have one firewall running, but ZA is the better firewall.
    If you cannot reinstall ZA, post back.
     
  5. 2005/11/19
    danep

    danep Inactive Thread Starter

    Joined:
    2005/11/18
    Messages:
    6
    Likes Received:
    0
    I'm on a managed network, running up-to-date VirusScan and spyware software, and smart enough to know what I should and shouldn't be downloading, so I'm really not too worried about spyware slipping my personal information past a firewall that doesn't block outgoing traffic. ZoneAlarm is overkill and simply one more program to have to manage for me.

    At any rate, I think upon further inspection that the problem has little or nothing to do with ZoneAlarm. I reinstalled, then re-un-installed it using the instructions on the Zonelabs site, and manually deleted any remnants from the registry, and still the problem persists. In fact, even when it was installed, and Windows Firewall was completely disabled, that little check box next to "Local Area Connection" would uncheck itself whenever I restarted, while the other two (for my Firewire ports) remained checked.

    The fact that the same symptoms persist whether or not ZA is installed makes me think it's unrelated. Any other thoughts?
     
  6. 2005/11/19
    danep

    danep Inactive Thread Starter

    Joined:
    2005/11/18
    Messages:
    6
    Likes Received:
    0
    To clarify, when I run

    Code:
    >netsh firewall show opmode
    Here is the output:

    Code:
    Domain profile configuration:
    -------------------------------------------------------------------
    Operational mode                  = Enable
    Exception mode                    = Enable
    
    Standard profile configuration (current):
    -------------------------------------------------------------------
    Operational mode                  = Enable
    Exception mode                    = Enable
    
    Local Area Connection 3 firewall configuration:
    -------------------------------------------------------------------
    Operational mode                  = Disable
    
    1394 Connection firewall configuration:
    -------------------------------------------------------------------
    Operational mode                  = Enable
    
    1394 Connection 2 firewall configuration:
    -------------------------------------------------------------------
    Operational mode                  = Enable
    And this is consistent whether OR not ZoneAlarm is installed.
     
  7. 2005/11/23
    danep

    danep Inactive Thread Starter

    Joined:
    2005/11/18
    Messages:
    6
    Likes Received:
    0
    Bump. I'd very much like to avoid reformatting/keeping ZoneAlarm. Yes Microsoft *****, and yes it has security holes, but it's good enough for my purposes, and the fact is that the Windows Firewall *service* is always running, regardless of whether or not you use it (or in my case, configured correctly). So if you're already on a relatively secure network, it doesn't make sense to have a separate application chewing up processor time and memory.
     
  8. 2005/11/23
    charlesvar

    charlesvar Inactive Alumni

    Joined:
    2002/02/18
    Messages:
    7,024
    Likes Received:
    0
    Rooting around WF's info, found this in the Help & Support Applet:
    This sound very much like what you're experiencing.

    Have you tried toggling the service?

    Go into WF's Advanced tab > Security logging and turn logging on - see if it does any logging after that.

    Regards - Charles
     
  9. 2005/11/29
    danep

    danep Inactive Thread Starter

    Joined:
    2005/11/18
    Messages:
    6
    Likes Received:
    0
    That's exactly it...I can turn on all of the individual connections, but when I restart "Local Area Network" is somehow always turned off.

    I enabled security logging, but there doesn't seem to be any useful information there. It just logs dropped packets and such, not the status/errors/events of the firewall service itself.
     
  10. 2005/11/30
    charlesvar

    charlesvar Inactive Alumni

    Joined:
    2002/02/18
    Messages:
    7,024
    Likes Received:
    0
  11. 2005/12/02
    danep

    danep Inactive Thread Starter

    Joined:
    2005/11/18
    Messages:
    6
    Likes Received:
    0
    Ahh ~ I checked again, and when it says it's not firewalling the connection, it's telling the truth. When the computer is first turned on, but before it finishes booting, and its failsafe startup policy is running, the log shows connections being filtered. Once Windows Firewall has finished loading, there is no log of any connections being made. And once I enable LAN-specific protection, it once again starts logging connections.

    Oh well...sounds like I'm headed back to ZA. Thanks for the help anyways.
     

Share This Page

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.