Firewall does not apply rules in "Ask" mode

Hi,
since the last update firewall does not apply saved rules when it’s configured to ask for what to do with new applications connecting to the Internet. It keeps asking whether I allow or deny connection to the Internet several times for each application (even for avast itself) after each reboot, system wake, etc. Of course I checked the option to “remember the setting for this app”. There are rules on the application list, but firewall does not apply them.

I reinstalled avast, the situation happened again.

Have you actually restarted the computer? Not down and start.

https://screencast-o-matic.com/screenshots/u/Lh/1586195904625-3723.png

Actually I’ve logged to post about this.
I’m having the same exact issue.

After the latest software update, Avast firewall keeps asking me about each connection every time I:

  • Restart/shutdown PC.
  • Re/connect to the internet.
  • Disable and renabling Avast.

Despite having the rules saved as allow, it just keeps asking over and over.
And it’s getting really annoying.
It’s even asking me about Avast connections.

Uninstalled, then downloaded Avast and installed it again, still persist.

https://i.postimg.cc/x8PdvqxJ/11.png

Of course I’ve restarted my computer, even twice, because I was reinstalling avast to see if this helps.

Same issue here. I had WireShark installed and it didn’t remember anything. I uninstalled WireShark and now it remembers some settings, others it does not remember. I do not understand why it remembers some and not others.

Once I click what I want it seems to remember until I either Reboot, put the computer to sleep or disconnect/reconnect internet. Seems to still be a bug in this new version. a few threads here about it but no response from Avast like the last firewall bug yet.

So if you have WireShark, uninstall it and it will get better but not 100% fixed.

Hi guys, I forwarded it…

Thank you fo reporting the problem. Currently, we are trying to reproduce it and fix it.

@asyn or @MartinK

This morning I rebooted and I see I am now on 20.2.5130.566
While I still had the slow boot from log in screen issue I was only asked to repeat one “ask” firewall setting and not the large multiple list a reboot had caused before.

Can you speak of what was changed in .566 ovre .565. Asyn said .565 was to fix the can’t turn on firewall bug. Was the permissions not sticking issue addressed in .566?

Either way if you are experiencing this problem try rebooting again and see if you are upgraded from .565 to .566

That’s something for the devs to answer. :wink:

2HawkerEng: .566 modifies the upgrade process from 20.1 to 20.2. Boot time WFP rules from the previous version of the driver are now removed from the system right after the installation of the new driver, and not during the first aswnethub.sys run. Hope this helps.

I also have same issue since avast premium update on my system 3 or 4 days ago. Hoping this gets resolved soon as turning off the firewall feature isn’t a good option but the constant prompts are very frustrating.

Have you tried to do an update manually?

https://screencast-o-matic.com/screenshots/u/Lh/1586365135776-68872.png

I am having the same issues on our Windows 7 Home pc. Firewall asking to allow basic internet service functions; system, spool svc, Avast svc, Avast gui, pia-vpn, svchost, etc. I did a repair function through Programs & Features; did not work. I did a manual update through the system tray; did not work. Resorting to the use of AvastClear uninstall utility. This seems to happen to one of our pc’s or laptops once a year. Two hours later; frustrating. Hopefully uninstall, CCleaner, and reinstall will work. :cry: :-[

As workaround, you can set the firewall to “auto-decide” for now.

Asyn
That is not a safe or acceptable work around by any stretch of the imagination.

The issue is that Avasts “auto decide” decisions are way to lenient pretty much giving everything access when requested. Many many programs these days unnecessarily phone home, collect and and report back private information they don’t need or spy on the users activities. For this reason the firewall must be set to ask so we only enable applications that actually need to get to the internet. As a general rule if the program can still run without internet then it doesn’t need access and deny should be set.

This bug seems to go away for short periods giving me false home, but keeps coming back. It’s really annoying. I wish we had some word from Avast when it will be patched. I feel we got an early Firewall Beta test not a working product which is really frustrating for such an important component to our security. Clearly this got let out before it was ready for prime time.

You could try the latest beta: https://forum.avast.com/index.php?board=15

Hi everyone, we have been able to find an issue in the way rules are generated, which might lead to this effect – rules being there but in the incorrect order, which leads to repeated ask dialogs. Let us verify the problem, we’ll update you here soon.

hi!

i woke up this morning with avast asking to reboot. after that, things went bad.

avast icon in the tray bar was red saying i was unprotected. user interface was having a bad day but assured me i was protected and some programs were being accused of wanting to access the internet even though i already said they could. i restarted the system many times, nothing solved. i went to avast installation folder, executed avast UI manually, it opened. went to firewall settings, all looked fine but still the same question over and over again. tried to manually set the “allow” for each program in the rules, didnt solve.

went for updates and asked to check for updates (i dont think there will one there since avast just updated itself, but tried anyway) and avast keeps looking for it forever. i dont think anything im seeing in the interface can be trusted and if things are this hard to figure out i would like to “downdate” (if this word ever exists, i want to go back to previous version) until i can trust this new version.

i didnt see there was a page 2 in this topic. ill wait for your solution.

@bob3160
Thanks, but yeah I have done manual updating. Didn’t make any difference.

@asyn
I went in and set everything to Internet Out (otherwise auto-decide) which was really time consuming. All the avast application items were set to “otherwise Ask” but the svchost entries and most other stuff was already set to “otherwise Auto-Decide” even though the system stuff kept asking me anyway. I also ran the cleanup which took a long time, windows thought the avast app was not responding but I kept telling it to wait as I could see the CPU was being utilized. It finally completed and it did remove a lot of redundant entries. I rebooted but, alas, same pop-ups asking me to allow system and avast services to access internet out. I rechecked the firewall app rules and all my changes were saved to auto-decide so that didn’t make any difference.

@lukor Thank you!