What's new
  • SNBForums Code of Conduct

    SNBForums is a community for everyone, no matter what their level of experience.

    Please be tolerant and patient of others, especially newcomers. We are all here to share and learn!

    The rules are simple: Be patient, be nice, be helpful or be gone!

Zonealarm firewall blocked incoming req at port 5355 from my ac68u running merlin

Resonce

Occasional Visitor
I searched about this port and it was Link-Local Multicast Name Resolution
I don't understand much about it though so I wasn't really sure if this was intended behavior or something fishy already going on
Could I ask anyone to impart to me their knowledge with regards to this?
 
Did Zonealarm give any more details such as which process or program was listening on Port 5535 or any other info such as why it blocked the request other than a sensitivity to 5535?
 
I searched about this port and it was Link-Local Multicast Name Resolution
I don't understand much about it though so I wasn't really sure if this was intended behavior or something fishy already going on
Could I ask anyone to impart to me their knowledge with regards to this?
When I lock down my firewall, I sometimes get the LLMNR request from internal clients, window's also use's it frequently. I would say, as long as your internal clients are safe and no external IP's are listening on port 5355, it might just be a false positive. As I have a very restrictive firewall on both the network & individual device's. It often requires me to reconfigure my firewall with a small change to allow whatever service protocol I may be using.

Source: I work in networking & security, also here's a link that may shed some more light hopefully

http://www.ph-v.net/article-network-intrusion-detection-swissknife-protocols-to-watch-69489218.html

Best,
Davi

Sent from my LG-H830 using Tapatalk
 
Did Zonealarm give any more details such as which process or program was listening on Port 5535 or any other info such as why it blocked the request other than a sensitivity to 5535?

Well apparently I'm just using the free version of this firewall so I don't really have the specifics

When I lock down my firewall, I sometimes get the LLMNR request from internal clients, window's also use's it frequently. I would say, as long as your internal clients are safe and no external IP's are listening on port 5355, it might just be a false positive. As I have a very restrictive firewall on both the network & individual device's. It often requires me to reconfigure my firewall with a small change to allow whatever service protocol I may be using.

Source: I work in networking & security, also here's a link that may shed some more light hopefully

http://www.ph-v.net/article-network-intrusion-detection-swissknife-protocols-to-watch-69489218.html

Best,
Davi

Sent from my LG-H830 using Tapatalk

Thank you very much for this is what I really needed.
 

Similar threads

Latest threads

Support SNBForums w/ Amazon

If you'd like to support SNBForums, just use this link and buy anything on Amazon. Thanks!

Sign Up For SNBForums Daily Digest

Get an update of what's new every day delivered to your mailbox. Sign up here!
Back
Top