Windows 7 64-bits Firewall delay incoming packet from 32-bits OS
Hi, I am getting a strange behavior with Windows 7 firewall and our client-server application. Every 5 to 10 connection the connection is delayed by 1 -4 seconds. If I turn off the firewall I do not have that delay anymore. Further test have showed that the problem is not only related to the firewall but also of the OS. Here is the result of the test. Client application Server application Result Windows XP Windows 7 64 Delay Windows 7 32 Windows 7 64 Delay Windows 7 64 Windows 7 64 No delay What I have tried so far: -Disabled the TCP Autotuning feature -Created a custom rule in the firewall for the specific port used Do anyone have an idea what is happening and how I could resolve the issue without turning off the windows firewall. Thank you Sascha
December 20th, 2010 8:25am

I manage to find out that the problem is coming from the call to “socket connect” that will fail with error 10037 (WSAEALREADY). Still do not have any idea how to resolve this. Sascha
Free Windows Admin Tool Kit Click here and download it now
December 20th, 2010 2:08pm

Hi Sascha, Thanks for posting in Microsoft TechNet forums. The error WSAEALREADY 10037 means operation already in progress. Description: An operation is tried on a nonblocking socket when an operation is already in progress. For example, calling connect (Wsapiref_8m7m.asp) is tried a second time on a nonblocking socket that is already connecting or an asynchronous request (WSAAsyncGetXbyY) is tried that has already been canceled or completed. Based on your former post, if you turn off the firewall the delay doesn’t exist anymore. I recommend you check the firewall logs to find if there’s any clue. The default path for the log is %windir%\system32\logfiles\firewall\pfirewall.log , you can refer to Configure the Windows Firewall Log. Best Regards, Miya Yao TechNet Subscriber Support in forum. If you have any feedback on our support, please contact tngfb@microsoft.comThis posting is provided "AS IS" with no warranties, and confers no rights. | Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
December 23rd, 2010 12:37am

Hi Miya, I have enable teh log for the firewall and here is the result of it when teh connection locks. 2010-12-23 15:19:19 ALLOW TCP 192.168.100.82 192.168.100.94 3268 1001 0 - 0 0 0 - - - RECEIVE 2010-12-23 15:19:19 ALLOW TCP 192.168.100.82 192.168.100.94 3269 1001 0 - 0 0 0 - - - RECEIVE 2010-12-23 15:19:22 ALLOW TCP 192.168.100.82 192.168.100.94 3270 1001 0 - 0 0 0 - - - RECEIVE <--- this connection was Locked 2010-12-23 15:19:23 ALLOW TCP 192.168.100.82 192.168.100.94 3271 1001 0 - 0 0 0 - - - RECEIVE There is no info on the connection process. Is there a way to enable additionnal log to get this info. I nee dto see what happen when a conection is establish between the 2 computers at the firewall level. Thank you Sascha
Free Windows Admin Tool Kit Click here and download it now
December 23rd, 2010 3:32pm

Hi Sascha, In this case, I recommend you use the Network Monitor, it’s a tool to allow capturing and protocol analysis of network traffic. For the usage information about Network Monitor, you can refer to: http://technet.microsoft.com/en-us/library/cc938655.aspx Meanwhile, you can also visit the network monitor forum in case you have any related questions. Best Regards, Miya Yao TechNet Subscriber Support in forum. If you have any feedback on our support, please contact tngfb@microsoft.com This posting is provided "AS IS" with no warranties, and confers no rights. | Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
December 26th, 2010 9:25pm

Hi Sascha, Do you have any update? Best Regards, Miya Yao TechNet Subscriber Support in forum. If you have any feedback on our support, please contact tngfb@microsoft.com This posting is provided "AS IS" with no warranties, and confers no rights. | Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
Free Windows Admin Tool Kit Click here and download it now
December 30th, 2010 1:36am

Hi, As this thread has been quiet for a while, we assume that the issue has been resolved. At this time, we will mark it as ‘Answered’ as the previous steps should be helpful for many similar scenarios. If the issue still persists, please feel free to reply this post directly so we will be notified to follow it up. You can also choose to unmark the answer as you wish. BTW, we’d love to hear your feedback about the solution. By sharing your experience you can help other community members facing similar problems. Thanks for your understanding and efforts. Best Regards, Miya Yao TechNet Subscriber Support in forum. If you have any feedback on our support, please contact tngfb@microsoft.comThis posting is provided "AS IS" with no warranties, and confers no rights. | Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
January 4th, 2011 4:20am

Hi, I am back from Christmas holidays. I have tried Network monitor and here are the results. I have 2 test application (Client, Server) running on 2 separated computers. They will do a simple TCP connect and transmit 100 characters and disconnect. Here is a normal sequence without the firewall turned on. 232 11:06:23 AM 1/4/2011 17.2931515 Server.exe PT6200WE 192.168.100.94 TCP TCP:Flags=......S., SrcPort=1075, DstPort=1001, PayloadLen=0, Seq=2521790252, Ack=0, Win=65535 ( ) = 65535 {TCP:15, IPv4:1} 233 11:06:23 AM 1/4/2011 17.2932509 Server.exe 192.168.100.94 PT6200WE TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=1075, PayloadLen=0, Seq=3950697849, Ack=2521790253, Win=8192 ( Scale factor not supported ) = 8192 {TCP:15, IPv4:1} 234 11:06:23 AM 1/4/2011 17.2934060 Server.exe PT6200WE 192.168.100.94 TCP TCP:Flags=...A...., SrcPort=1075, DstPort=1001, PayloadLen=0, Seq=2521790253, Ack=3950697850, Win=65535 (scale factor 0x0) = 65535 {TCP:15, IPv4:1} 235 11:06:23 AM 1/4/2011 17.2937642 Server.exe 192.168.100.94 PT6200WE TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=1075, PayloadLen=1, Seq=3950697850 - 3950697851, Ack=2521790253, Win=64240 (scale factor 0x0) = 64240 {TCP:15, IPv4:1} 236 11:06:23 AM 1/4/2011 17.3048371 Server.exe PT6200WE 192.168.100.94 TCP TCP:Flags=...AP..., SrcPort=1075, DstPort=1001, PayloadLen=2, Seq=2521790253 - 2521790255, Ack=3950697851, Win=65534 (scale factor 0x0) = 65534 {TCP:15, IPv4:1} 237 11:06:23 AM 1/4/2011 17.3615006 192.168.100.94 PT6200WE UDP UDP:SrcPort = 60595, DstPort = 31234, Length = 200 {UDP:9, IPv4:1} 238 11:06:24 AM 1/4/2011 17.5188175 Server.exe 192.168.100.94 PT6200WE TCP TCP:Flags=...A...., SrcPort=1001, DstPort=1075, PayloadLen=0, Seq=3950697851, Ack=2521790255, Win=64238 (scale factor 0x0) = 64238 {TCP:15, IPv4:1} 239 11:06:24 AM 1/4/2011 17.5190298 Server.exe PT6200WE 192.168.100.94 TCP TCP:Flags=...AP..., SrcPort=1075, DstPort=1001, PayloadLen=100, Seq=2521790255 - 2521790355, Ack=3950697851, Win=65534 (scale factor 0x0) = 65534 {TCP:15, IPv4:1} 240 11:06:24 AM 1/4/2011 17.5345176 Server.exe 192.168.100.94 PT6200WE TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=1075, PayloadLen=1, Seq=3950697851 - 3950697852, Ack=2521790355, Win=64138 (scale factor 0x0) = 64138 {TCP:15, IPv4:1} 241 11:06:24 AM 1/4/2011 17.5372739 Server.exe 192.168.100.94 PT6200WE TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=1075, PayloadLen=0, Seq=3950697852, Ack=2521790355, Win=64138 (scale factor 0x0) = 64138 {TCP:15, IPv4:1} 242 11:06:24 AM 1/4/2011 17.5373649 Server.exe PT6200WE 192.168.100.94 TCP TCP:Flags=...A...., SrcPort=1075, DstPort=1001, PayloadLen=0, Seq=2521790355, Ack=3950697853, Win=65533 (scale factor 0x0) = 65533 {TCP:15, IPv4:1} 243 11:06:24 AM 1/4/2011 17.5394007 Server.exe PT6200WE 192.168.100.94 TCP TCP:Flags=...A...F, SrcPort=1075, DstPort=1001, PayloadLen=0, Seq=2521790355, Ack=3950697853, Win=65533 (scale factor 0x0) = 65533 {TCP:15, IPv4:1} 244 11:06:24 AM 1/4/2011 17.5394169 Server.exe 192.168.100.94 PT6200WE TCP TCP:Flags=...A...., SrcPort=1001, DstPort=1075, PayloadLen=0, Seq=3950697853, Ack=2521790356, Win=64138 (scale factor 0x0) = 64138 {TCP:15, IPv4:1} I am using a TCP connection between the 2 test programs. So I suppose that the UDP packet is part of the underling protocol… Here is the sequence when the firewall is on. 41 11:16:23 AM 1/4/2011 0.9206949 Server.exe 192.168.100.82 192.168.100.94 TCP TCP:Flags=...AP..., SrcPort=1120, DstPort=1001, PayloadLen=100, Seq=1467434026 - 1467434126, Ack=3677454260, Win=65534 (scale factor 0x0) = 65534 {TCP:6, IPv4:1} 42 11:16:23 AM 1/4/2011 0.9360376 Server.exe 192.168.100.94 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=1120, PayloadLen=1, Seq=3677454260 - 3677454261, Ack=1467434126, Win=64138 (scale factor 0x0) = 64138 {TCP:6, IPv4:1} 43 11:16:23 AM 1/4/2011 0.9383103 Server.exe 192.168.100.82 192.168.100.94 TCP TCP:Flags=...A...F, SrcPort=1120, DstPort=1001, PayloadLen=0, Seq=1467434126, Ack=3677454261, Win=65533 (scale factor 0x0) = 65533 {TCP:6, IPv4:1} 44 11:16:23 AM 1/4/2011 0.9383447 Server.exe 192.168.100.94 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=1120, PayloadLen=0, Seq=3677454261, Ack=1467434127, Win=64138 (scale factor 0x0) = 64138 {TCP:6, IPv4:1} 45 11:16:23 AM 1/4/2011 0.9401577 Server.exe 192.168.100.94 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=1120, PayloadLen=0, Seq=3677454261, Ack=1467434127, Win=64138 (scale factor 0x0) = 64138 {TCP:6, IPv4:1} 46 11:16:23 AM 1/4/2011 0.9404191 Server.exe 192.168.100.82 192.168.100.94 TCP TCP:Flags=...A...., SrcPort=1120, DstPort=1001, PayloadLen=0, Seq=1467434127, Ack=3677454262, Win=65533 (scale factor 0x0) = 65533 {TCP:6, IPv4:1} 47 11:16:23 AM 1/4/2011 0.9423131 System 192.168.100.82 192.168.100.94 TCP TCP:Flags=......S., SrcPort=1121, DstPort=1001, PayloadLen=0, Seq=743876678, Ack=0, Win=65535 ( ) = 65535 {TCP:7, IPv4:1} 48 11:16:23 AM 1/4/2011 0.9515478 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 49 11:16:23 AM 1/4/2011 0.9985162 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 50 11:16:23 AM 1/4/2011 1.0297071 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 51 11:16:23 AM 1/4/2011 1.0609526 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 52 11:16:24 AM 1/4/2011 1.0922868 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 53 11:16:24 AM 1/4/2011 1.0988942 [001EC1 21CEF1 [00-1E-C1-21-CE-F1]] [0180C2 000000 [01-80-C2-00-00-00]] SPANTreeBPDU SPANTreeBPDU 54 11:16:24 AM 1/4/2011 1.1232427 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 55 11:16:24 AM 1/4/2011 1.1544175 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 56 11:16:24 AM 1/4/2011 1.1856440 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 57 11:16:24 AM 1/4/2011 1.2168074 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 58 11:16:24 AM 1/4/2011 1.2638238 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 59 11:16:24 AM 1/4/2011 1.2953289 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 60 11:16:24 AM 1/4/2011 1.3259992 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 61 11:16:24 AM 1/4/2011 1.3571641 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 62 11:16:24 AM 1/4/2011 1.3885379 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 63 11:16:24 AM 1/4/2011 1.4195803 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 64 11:16:24 AM 1/4/2011 1.4516167 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 65 11:16:24 AM 1/4/2011 1.4820252 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 66 11:16:24 AM 1/4/2011 1.5133848 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 67 11:16:24 AM 1/4/2011 1.5600895 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 68 11:16:24 AM 1/4/2011 1.5912860 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 69 11:16:24 AM 1/4/2011 1.6224849 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 70 11:16:24 AM 1/4/2011 1.6536634 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 71 11:16:24 AM 1/4/2011 1.6849441 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 72 11:16:24 AM 1/4/2011 1.7116090 192.168.100.46 192.168.101.3 ARP ARP:Request, 192.168.100.46 asks for 192.168.101.3 73 11:16:24 AM 1/4/2011 1.7160587 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 74 11:16:24 AM 1/4/2011 1.7473200 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 75 11:16:24 AM 1/4/2011 1.7784174 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 76 11:16:24 AM 1/4/2011 1.8102312 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 77 11:16:24 AM 1/4/2011 1.8564022 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 78 11:16:24 AM 1/4/2011 1.8878985 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 79 11:16:24 AM 1/4/2011 1.9188885 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 80 11:16:24 AM 1/4/2011 1.9416503 FE80:0:0:0:D4FF:9A62:C0EC:3064 FF02:0:0:0:0:0:1:3 LLMNR LLMNR:QueryId = 0x9119, Standard, Query for v-rd-web1 of type Host Addr on class Internet {UDP:9, IPv6:8} 81 11:16:24 AM 1/4/2011 1.9416503 192.168.100.79 224.0.0.252 LLMNR LLMNR:QueryId = 0x9119, Standard, Query for v-rd-web1 of type Host Addr on class Internet {UDP:11, IPv4:10} 82 11:16:24 AM 1/4/2011 1.9425727 FE80:0:0:0:D4FF:9A62:C0EC:3064 FF02:0:0:0:0:0:1:3 LLMNR LLMNR:QueryId = 0x77AC, Standard, Query for v-rd-web1 of type AAAA on class Internet {UDP:12, IPv6:8} 83 11:16:24 AM 1/4/2011 1.9501179 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 84 11:16:24 AM 1/4/2011 1.9812124 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 85 11:16:24 AM 1/4/2011 2.0125316 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 86 11:16:24 AM 1/4/2011 2.0442739 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 87 11:16:24 AM 1/4/2011 2.0747990 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 88 11:16:25 AM 1/4/2011 2.1217128 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 89 11:16:25 AM 1/4/2011 2.1415071 192.168.100.109 192.168.100.122 ARP ARP:Request, 192.168.100.109 asks for 192.168.100.122 90 11:16:25 AM 1/4/2011 2.1528509 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 91 11:16:25 AM 1/4/2011 2.1840173 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 92 11:16:25 AM 1/4/2011 2.2153401 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 93 11:16:25 AM 1/4/2011 2.2474854 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 94 11:16:25 AM 1/4/2011 2.2776079 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 95 11:16:25 AM 1/4/2011 2.3088337 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 96 11:16:25 AM 1/4/2011 2.3402112 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 97 11:16:25 AM 1/4/2011 2.3712624 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 98 11:16:25 AM 1/4/2011 2.4180313 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 99 11:16:25 AM 1/4/2011 2.4492424 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 100 11:16:25 AM 1/4/2011 2.4804201 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 101 11:16:25 AM 1/4/2011 2.5116147 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 102 11:16:25 AM 1/4/2011 2.5428074 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 103 11:16:25 AM 1/4/2011 2.5741318 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 104 11:16:25 AM 1/4/2011 2.6052109 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 105 11:16:25 AM 1/4/2011 2.6364120 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 106 11:16:25 AM 1/4/2011 2.6676389 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 107 11:16:25 AM 1/4/2011 2.6927958 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 108 11:16:25 AM 1/4/2011 2.7868719 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 109 11:16:25 AM 1/4/2011 2.7948593 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 110 11:16:25 AM 1/4/2011 2.8028994 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 111 11:16:25 AM 1/4/2011 2.8110257 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 112 11:16:25 AM 1/4/2011 2.8188994 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 113 11:16:25 AM 1/4/2011 2.8269000 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 114 11:16:25 AM 1/4/2011 2.8349031 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 115 11:16:25 AM 1/4/2011 2.8429506 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 116 11:16:25 AM 1/4/2011 2.8509611 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 117 11:16:25 AM 1/4/2011 2.8589771 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 118 11:16:25 AM 1/4/2011 2.8668801 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 119 11:16:25 AM 1/4/2011 2.8749082 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 120 11:16:25 AM 1/4/2011 2.8828995 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63663, DstPort = 31234, Length = 200 {UDP:2, IPv4:1} 121 11:16:25 AM 1/4/2011 2.8837945 192.168.100.82 192.168.100.94 UDP UDP:SrcPort = 1053, DstPort = 31234, Length = 172 {UDP:13, IPv4:1} 122 11:16:25 AM 1/4/2011 2.8888078 192.168.100.94 192.168.100.82 UDP UDP:SrcPort = 63665, DstPort = 31234, Length = 246 {UDP:14, IPv4:1} 123 11:16:25 AM 1/4/2011 3.0543822 RADIANT-36LRP00 192.168.255.255 BROWSER BROWSER:Host Announcement, ServerName = RADIANT-36LRP00 {SMB:17, UDP:16, IPv4:15} 124 11:16:26 AM 1/4/2011 3.0981173 [001EC1 21CEF1 [00-1E-C1-21-CE-F1]] [0180C2 000000 [01-80-C2-00-00-00]] SPANTreeBPDU SPANTreeBPDU 125 11:16:26 AM 1/4/2011 3.5261328 192.168.100.93 192.168.100.255 UDP UDP:SrcPort = 8065, DstPort = 8064, Length = 13 {UDP:19, IPv4:18} 126 11:16:26 AM 1/4/2011 3.5261328 192.168.100.93 192.168.100.255 UDP UDP:SrcPort = 8065, DstPort = 8064, Length = 22 {UDP:19, IPv4:18} 127 11:16:26 AM 1/4/2011 3.5283978 192.168.100.25 192.168.100.255 UDP UDP:SrcPort = 8064, DstPort = 8065, Length = 41 {UDP:21, IPv4:20} 128 11:16:26 AM 1/4/2011 3.6824045 192.168.100.57 192.168.100.255 UDP UDP:SrcPort = 8065, DstPort = 8064, Length = 13 {UDP:23, IPv4:22} 129 11:16:26 AM 1/4/2011 3.6824265 192.168.100.57 192.168.100.255 UDP UDP:SrcPort = 8065, DstPort = 8064, Length = 22 {UDP:23, IPv4:22} 130 11:16:26 AM 1/4/2011 3.6846347 192.168.100.25 192.168.100.255 UDP UDP:SrcPort = 8064, DstPort = 8065, Length = 41 {UDP:21, IPv4:20} 131 11:16:26 AM 1/4/2011 3.8896811 System 192.168.100.82 192.168.100.94 TCP TCP:[SynReTransmit #47]Flags=......S., SrcPort=1121, DstPort=1001, PayloadLen=0, Seq=743876678, Ack=0, Win=65535 ( ) = 65535 {TCP:7, IPv4:1} 132 11:16:26 AM 1/4/2011 3.8897658 System 192.168.100.94 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=1121, PayloadLen=0, Seq=3262250284, Ack=743876679, Win=8192 ( Scale factor not supported ) = 8192 {TCP:7, IPv4:1} 133 11:16:26 AM 1/4/2011 3.8900015 System 192.168.100.82 192.168.100.94 TCP TCP:Flags=...A...., SrcPort=1121, DstPort=1001, PayloadLen=0, Seq=743876679, Ack=3262250285, Win=65535 (scale factor 0x0) = 65535 {TCP:7, IPv4:1} 134 11:16:26 AM 1/4/2011 3.8902508 System 192.168.100.94 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=1121, PayloadLen=1, Seq=3262250285 - 3262250286, Ack=743876679, Win=64240 (scale factor 0x0) = 64240 {TCP:7, IPv4:1} 135 11:16:26 AM 1/4/2011 3.9069529 System 192.168.100.82 192.168.100.94 TCP TCP:Flags=...AP..., SrcPort=1121, DstPort=1001, PayloadLen=2, Seq=743876679 - 743876681, Ack=3262250286, Win=65534 (scale factor 0x0) = 65534 {TCP:7, IPv4:1} 136 11:16:26 AM 1/4/2011 4.0785266 FE80:0:0:0:D4FF:9A62:C0EC:3064 FF02:0:0:0:0:0:1:3 LLMNR LLMNR:QueryId = 0xB194, Standard, Query for v-rd-web1 of type Host Addr on class Internet {UDP:24, IPv6:8} 137 11:16:26 AM 1/4/2011 4.0785266 192.168.100.79 224.0.0.252 LLMNR LLMNR:QueryId = 0xB194, Standard, Query for v-rd-web1 of type Host Addr on class Internet {UDP:25, IPv4:10} 138 11:16:26 AM 1/4/2011 4.0792822 FE80:0:0:0:D4FF:9A62:C0EC:3064 FF02:0:0:0:0:0:1:3 LLMNR LLMNR:QueryId = 0x196E, Standard, Query for v-rd-web1 of type AAAA on class Internet {UDP:26, IPv6:8} 139 11:16:27 AM 1/4/2011 4.1183585 System 192.168.100.94 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=1121, PayloadLen=0, Seq=3262250286, Ack=743876681, Win=64238 (scale factor 0x0) = 64238 {TCP:7, IPv4:1} 140 11:16:27 AM 1/4/2011 4.1187050 System 192.168.100.82 192.168.100.94 TCP TCP:Flags=...AP..., SrcPort=1121, DstPort=1001, PayloadLen=100, Seq=743876681 - 743876781, Ack=3262250286, Win=65534 (scale factor 0x0) = 65534 {TCP:7, IPv4:1} 141 11:16:27 AM 1/4/2011 4.1339820 System 192.168.100.94 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=1121, PayloadLen=1, Seq=3262250286 - 3262250287, Ack=743876781, Win=64138 (scale factor 0x0) = 64138 {TCP:7, IPv4:1} 142 11:16:27 AM 1/4/2011 4.1379145 System 192.168.100.94 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=1121, PayloadLen=0, Seq=3262250287, Ack=743876781, Win=64138 (scale factor 0x0) = 64138 {TCP:7, IPv4:1} 143 11:16:27 AM 1/4/2011 4.1381773 System 192.168.100.82 192.168.100.94 TCP TCP:Flags=...A...., SrcPort=1121, DstPort=1001, PayloadLen=0, Seq=743876781, Ack=3262250288, Win=65533 (scale factor 0x0) = 65533 {TCP:7, IPv4:1} 144 11:16:27 AM 1/4/2011 4.1413380 System 192.168.100.82 192.168.100.94 TCP TCP:Flags=...A...F, SrcPort=1121, DstPort=1001, PayloadLen=0, Seq=743876781, Ack=3262250288, Win=65533 (scale factor 0x0) = 65533 {TCP:7, IPv4:1} 145 11:16:27 AM 1/4/2011 4.1413681 System 192.168.100.94 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=1121, PayloadLen=0, Seq=3262250288, Ack=743876782, Win=64138 (scale factor 0x0) = 64138 {TCP:7, IPv4:1} 146 11:16:27 AM 1/4/2011 4.1449977 192.168.100.82 192.168.100.94 TCP TCP:Flags=......S., SrcPort=1122, DstPort=1001, PayloadLen=0, Seq=2101965173, Ack=0, Win=65535 ( ) = 65535 {TCP:27, IPv4:1} You can see now there is a bunch of UPD packet send between the 2 computers. Also each time I get the delayed packet there is a TCP:[SynReTransmit] request I have tried the same test with both computer disconnected from the main network and I get the same results. Thank you Sascha
Free Windows Admin Tool Kit Click here and download it now
January 4th, 2011 11:36am

Hello Sascha, It is nice to hear from you again. How's your vacations? Based on my analysis of the network monitor logs, the traffic goes abnormally since the first try on destination Port 31234. The trials repeat for about 2 seconds, unlike the logs of test without firewall enabled. Regarding the software invovled, is there any special use on Port 31234? Please check if the firewall open Port 31234 properly on the destination computer (server side). Thanks. Regards, MiyaThis posting is provided "AS IS" with no warranties, and confers no rights. | Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
January 5th, 2011 11:54am

HI, The vacation where good, thanks you. The port 31234 is used by a tool called InputDirector. I have disabled this application on both computer and the problem is still there. See time index 7:52:01. 9 7:51:57 AM 1/6/2011 1.2005005 System 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2942, DstPort=1001, PayloadLen=0, Seq=3980585808, Ack=0, Win=65535 ( ) = 65535 {TCP:4, IPv4:1} 10 7:51:57 AM 1/6/2011 1.2006014 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2942, PayloadLen=0, Seq=2130001104, Ack=3980585809, Win=8192 ( Scale factor not supported ) = 8192 {TCP:4, IPv4:1} 11 7:51:57 AM 1/6/2011 1.2009255 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2942, DstPort=1001, PayloadLen=0, Seq=3980585809, Ack=2130001105, Win=65535 (scale factor 0x0) = 65535 {TCP:4, IPv4:1} 12 7:51:57 AM 1/6/2011 1.2013551 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2942, PayloadLen=1, Seq=2130001105 - 2130001106, Ack=3980585809, Win=64240 (scale factor 0x0) = 64240 {TCP:4, IPv4:1} 13 7:51:57 AM 1/6/2011 1.2162846 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2942, DstPort=1001, PayloadLen=2, Seq=3980585809 - 3980585811, Ack=2130001106, Win=65534 (scale factor 0x0) = 65534 {TCP:4, IPv4:1} 14 7:51:57 AM 1/6/2011 1.4199957 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2942, PayloadLen=0, Seq=2130001106, Ack=3980585811, Win=64238 (scale factor 0x0) = 64238 {TCP:4, IPv4:1} 15 7:51:57 AM 1/6/2011 1.4202886 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2942, DstPort=1001, PayloadLen=100, Seq=3980585811 - 3980585911, Ack=2130001106, Win=65534 (scale factor 0x0) = 65534 {TCP:4, IPv4:1} 16 7:51:57 AM 1/6/2011 1.4356170 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2942, PayloadLen=1, Seq=2130001106 - 2130001107, Ack=3980585911, Win=64138 (scale factor 0x0) = 64138 {TCP:4, IPv4:1} 17 7:51:57 AM 1/6/2011 1.4394115 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2942, PayloadLen=0, Seq=2130001107, Ack=3980585911, Win=64138 (scale factor 0x0) = 64138 {TCP:4, IPv4:1} 18 7:51:57 AM 1/6/2011 1.4395853 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2942, DstPort=1001, PayloadLen=0, Seq=3980585911, Ack=2130001108, Win=65533 (scale factor 0x0) = 65533 {TCP:4, IPv4:1} 19 7:51:57 AM 1/6/2011 1.4507564 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2942, DstPort=1001, PayloadLen=0, Seq=3980585911, Ack=2130001108, Win=65533 (scale factor 0x0) = 65533 {TCP:4, IPv4:1} 20 7:51:57 AM 1/6/2011 1.4507836 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2942, PayloadLen=0, Seq=2130001108, Ack=3980585912, Win=64138 (scale factor 0x0) = 64138 {TCP:4, IPv4:1} 21 7:51:57 AM 1/6/2011 1.6863091 System 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2943, DstPort=1001, PayloadLen=0, Seq=42813259, Ack=0, Win=65535 ( ) = 65535 {TCP:5, IPv4:1} 22 7:51:57 AM 1/6/2011 1.6864136 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2943, PayloadLen=0, Seq=2238087831, Ack=42813260, Win=8192 ( Scale factor not supported ) = 8192 {TCP:5, IPv4:1} 23 7:51:57 AM 1/6/2011 1.6866105 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2943, DstPort=1001, PayloadLen=0, Seq=42813260, Ack=2238087832, Win=65535 (scale factor 0x0) = 65535 {TCP:5, IPv4:1} 24 7:51:57 AM 1/6/2011 1.6875370 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2943, PayloadLen=1, Seq=2238087832 - 2238087833, Ack=42813260, Win=64240 (scale factor 0x0) = 64240 {TCP:5, IPv4:1} 25 7:51:57 AM 1/6/2011 1.7007326 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2943, DstPort=1001, PayloadLen=2, Seq=42813260 - 42813262, Ack=2238087833, Win=65534 (scale factor 0x0) = 65534 {TCP:5, IPv4:1} 28 7:51:57 AM 1/6/2011 1.9036101 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2943, PayloadLen=0, Seq=2238087833, Ack=42813262, Win=64238 (scale factor 0x0) = 64238 {TCP:5, IPv4:1} 29 7:51:57 AM 1/6/2011 1.9039301 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2943, DstPort=1001, PayloadLen=100, Seq=42813262 - 42813362, Ack=2238087833, Win=65534 (scale factor 0x0) = 65534 {TCP:5, IPv4:1} 30 7:51:57 AM 1/6/2011 1.9192573 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2943, PayloadLen=1, Seq=2238087833 - 2238087834, Ack=42813362, Win=64138 (scale factor 0x0) = 64138 {TCP:5, IPv4:1} 31 7:51:57 AM 1/6/2011 1.9233698 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2943, PayloadLen=0, Seq=2238087834, Ack=42813362, Win=64138 (scale factor 0x0) = 64138 {TCP:5, IPv4:1} 32 7:51:57 AM 1/6/2011 1.9236026 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2943, DstPort=1001, PayloadLen=0, Seq=42813362, Ack=2238087835, Win=65533 (scale factor 0x0) = 65533 {TCP:5, IPv4:1} 33 7:51:58 AM 1/6/2011 1.9351862 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2943, DstPort=1001, PayloadLen=0, Seq=42813362, Ack=2238087835, Win=65533 (scale factor 0x0) = 65533 {TCP:5, IPv4:1} 34 7:51:58 AM 1/6/2011 1.9352140 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2943, PayloadLen=0, Seq=2238087835, Ack=42813363, Win=64138 (scale factor 0x0) = 64138 {TCP:5, IPv4:1} 35 7:51:58 AM 1/6/2011 1.9388788 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2944, DstPort=1001, PayloadLen=0, Seq=864964714, Ack=0, Win=65535 ( ) = 65535 {TCP:6, IPv4:1} 36 7:51:58 AM 1/6/2011 1.9389481 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2944, PayloadLen=0, Seq=428574607, Ack=864964715, Win=8192 ( Scale factor not supported ) = 8192 {TCP:6, IPv4:1} 37 7:51:58 AM 1/6/2011 1.9392400 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2944, DstPort=1001, PayloadLen=0, Seq=864964715, Ack=428574608, Win=65535 (scale factor 0x0) = 65535 {TCP:6, IPv4:1} 38 7:51:58 AM 1/6/2011 1.9396224 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2944, PayloadLen=1, Seq=428574608 - 428574609, Ack=864964715, Win=64240 (scale factor 0x0) = 64240 {TCP:6, IPv4:1} 39 7:51:58 AM 1/6/2011 1.9506934 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2944, DstPort=1001, PayloadLen=2, Seq=864964715 - 864964717, Ack=428574609, Win=65534 (scale factor 0x0) = 65534 {TCP:6, IPv4:1} 41 7:51:58 AM 1/6/2011 2.1532035 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2944, PayloadLen=0, Seq=428574609, Ack=864964717, Win=64238 (scale factor 0x0) = 64238 {TCP:6, IPv4:1} 42 7:51:58 AM 1/6/2011 2.1534828 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2944, DstPort=1001, PayloadLen=100, Seq=864964717 - 864964817, Ack=428574609, Win=65534 (scale factor 0x0) = 65534 {TCP:6, IPv4:1} 43 7:51:58 AM 1/6/2011 2.1688581 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2944, PayloadLen=1, Seq=428574609 - 428574610, Ack=864964817, Win=64138 (scale factor 0x0) = 64138 {TCP:6, IPv4:1} 44 7:51:58 AM 1/6/2011 2.1724917 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2944, PayloadLen=0, Seq=428574610, Ack=864964817, Win=64138 (scale factor 0x0) = 64138 {TCP:6, IPv4:1} 45 7:51:58 AM 1/6/2011 2.1728151 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2944, DstPort=1001, PayloadLen=0, Seq=864964817, Ack=428574611, Win=65533 (scale factor 0x0) = 65533 {TCP:6, IPv4:1} 46 7:51:58 AM 1/6/2011 2.1852404 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2944, DstPort=1001, PayloadLen=0, Seq=864964817, Ack=428574611, Win=65533 (scale factor 0x0) = 65533 {TCP:6, IPv4:1} 47 7:51:58 AM 1/6/2011 2.1852679 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2944, PayloadLen=0, Seq=428574611, Ack=864964818, Win=64138 (scale factor 0x0) = 64138 {TCP:6, IPv4:1} 48 7:51:58 AM 1/6/2011 2.1889298 System 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2945, DstPort=1001, PayloadLen=0, Seq=1445712757, Ack=0, Win=65535 ( ) = 65535 {TCP:7, IPv4:1} 49 7:51:58 AM 1/6/2011 2.1890042 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2945, PayloadLen=0, Seq=2863414226, Ack=1445712758, Win=8192 ( Scale factor not supported ) = 8192 {TCP:7, IPv4:1} 50 7:51:58 AM 1/6/2011 2.1892682 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2945, DstPort=1001, PayloadLen=0, Seq=1445712758, Ack=2863414227, Win=65535 (scale factor 0x0) = 65535 {TCP:7, IPv4:1} 51 7:51:58 AM 1/6/2011 2.1894277 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2945, PayloadLen=1, Seq=2863414227 - 2863414228, Ack=1445712758, Win=64240 (scale factor 0x0) = 64240 {TCP:7, IPv4:1} 52 7:51:58 AM 1/6/2011 2.2006960 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2945, DstPort=1001, PayloadLen=2, Seq=1445712758 - 1445712760, Ack=2863414228, Win=65534 (scale factor 0x0) = 65534 {TCP:7, IPv4:1} 53 7:51:58 AM 1/6/2011 2.4028093 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2945, PayloadLen=0, Seq=2863414228, Ack=1445712760, Win=64238 (scale factor 0x0) = 64238 {TCP:7, IPv4:1} 54 7:51:58 AM 1/6/2011 2.4030630 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2945, DstPort=1001, PayloadLen=100, Seq=1445712760 - 1445712860, Ack=2863414228, Win=65534 (scale factor 0x0) = 65534 {TCP:7, IPv4:1} 55 7:51:58 AM 1/6/2011 2.4184797 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2945, PayloadLen=1, Seq=2863414228 - 2863414229, Ack=1445712860, Win=64138 (scale factor 0x0) = 64138 {TCP:7, IPv4:1} 56 7:51:58 AM 1/6/2011 2.4220881 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2945, PayloadLen=0, Seq=2863414229, Ack=1445712860, Win=64138 (scale factor 0x0) = 64138 {TCP:7, IPv4:1} 57 7:51:58 AM 1/6/2011 2.4223465 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2945, DstPort=1001, PayloadLen=0, Seq=1445712860, Ack=2863414230, Win=65533 (scale factor 0x0) = 65533 {TCP:7, IPv4:1} 58 7:51:58 AM 1/6/2011 2.4354454 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2945, DstPort=1001, PayloadLen=0, Seq=1445712860, Ack=2863414230, Win=65533 (scale factor 0x0) = 65533 {TCP:7, IPv4:1} 59 7:51:58 AM 1/6/2011 2.4354736 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2945, PayloadLen=0, Seq=2863414230, Ack=1445712861, Win=64138 (scale factor 0x0) = 64138 {TCP:7, IPv4:1} 60 7:51:58 AM 1/6/2011 2.4391773 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2946, DstPort=1001, PayloadLen=0, Seq=1113728516, Ack=0, Win=65535 ( ) = 65535 {TCP:8, IPv4:1} 61 7:51:58 AM 1/6/2011 2.4392524 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2946, PayloadLen=0, Seq=738220827, Ack=1113728517, Win=8192 ( Scale factor not supported ) = 8192 {TCP:8, IPv4:1} 62 7:51:58 AM 1/6/2011 2.4395333 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2946, DstPort=1001, PayloadLen=0, Seq=1113728517, Ack=738220828, Win=65535 (scale factor 0x0) = 65535 {TCP:8, IPv4:1} 63 7:51:58 AM 1/6/2011 2.4397430 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2946, PayloadLen=1, Seq=738220828 - 738220829, Ack=1113728517, Win=64240 (scale factor 0x0) = 64240 {TCP:8, IPv4:1} 64 7:51:58 AM 1/6/2011 2.4506589 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2946, DstPort=1001, PayloadLen=2, Seq=1113728517 - 1113728519, Ack=738220829, Win=65534 (scale factor 0x0) = 65534 {TCP:8, IPv4:1} 67 7:51:58 AM 1/6/2011 2.6523206 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2946, PayloadLen=0, Seq=738220829, Ack=1113728519, Win=64238 (scale factor 0x0) = 64238 {TCP:8, IPv4:1} 68 7:51:58 AM 1/6/2011 2.6526917 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2946, DstPort=1001, PayloadLen=100, Seq=1113728519 - 1113728619, Ack=738220829, Win=65534 (scale factor 0x0) = 65534 {TCP:8, IPv4:1} 69 7:51:58 AM 1/6/2011 2.6680310 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2946, PayloadLen=1, Seq=738220829 - 738220830, Ack=1113728619, Win=64138 (scale factor 0x0) = 64138 {TCP:8, IPv4:1} 70 7:51:58 AM 1/6/2011 2.6706248 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2946, PayloadLen=0, Seq=738220830, Ack=1113728619, Win=64138 (scale factor 0x0) = 64138 {TCP:8, IPv4:1} 71 7:51:58 AM 1/6/2011 2.6708782 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2946, DstPort=1001, PayloadLen=0, Seq=1113728619, Ack=738220831, Win=65533 (scale factor 0x0) = 65533 {TCP:8, IPv4:1} 72 7:51:58 AM 1/6/2011 2.6852815 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2946, DstPort=1001, PayloadLen=0, Seq=1113728619, Ack=738220831, Win=65533 (scale factor 0x0) = 65533 {TCP:8, IPv4:1} 73 7:51:58 AM 1/6/2011 2.6853108 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2946, PayloadLen=0, Seq=738220831, Ack=1113728620, Win=64138 (scale factor 0x0) = 64138 {TCP:8, IPv4:1} 74 7:51:58 AM 1/6/2011 2.6889192 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2947, DstPort=1001, PayloadLen=0, Seq=2582985080, Ack=0, Win=65535 ( ) = 65535 {TCP:9, IPv4:1} 75 7:51:58 AM 1/6/2011 2.6890050 SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2947, PayloadLen=0, Seq=1989620989, Ack=2582985081, Win=8192 ( Scale factor not supported ) = 8192 {TCP:9, IPv4:1} 76 7:51:58 AM 1/6/2011 2.6892796 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2947, DstPort=1001, PayloadLen=0, Seq=2582985081, Ack=1989620990, Win=65535 (scale factor 0x0) = 65535 {TCP:9, IPv4:1} 77 7:51:58 AM 1/6/2011 2.6897144 SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2947, PayloadLen=1, Seq=1989620990 - 1989620991, Ack=2582985081, Win=64240 (scale factor 0x0) = 64240 {TCP:9, IPv4:1} 78 7:51:58 AM 1/6/2011 2.7008301 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2947, DstPort=1001, PayloadLen=2, Seq=2582985081 - 2582985083, Ack=1989620991, Win=65534 (scale factor 0x0) = 65534 {TCP:9, IPv4:1} 82 7:51:58 AM 1/6/2011 2.9020017 SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2947, PayloadLen=0, Seq=1989620991, Ack=2582985083, Win=64238 (scale factor 0x0) = 64238 {TCP:9, IPv4:1} 83 7:51:58 AM 1/6/2011 2.9023379 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2947, DstPort=1001, PayloadLen=100, Seq=2582985083 - 2582985183, Ack=1989620991, Win=65534 (scale factor 0x0) = 65534 {TCP:9, IPv4:1} 84 7:51:58 AM 1/6/2011 2.9176350 SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2947, PayloadLen=1, Seq=1989620991 - 1989620992, Ack=2582985183, Win=64138 (scale factor 0x0) = 64138 {TCP:9, IPv4:1} 85 7:51:58 AM 1/6/2011 2.9198370 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2947, DstPort=1001, PayloadLen=0, Seq=2582985183, Ack=1989620992, Win=65533 (scale factor 0x0) = 65533 {TCP:9, IPv4:1} 86 7:51:58 AM 1/6/2011 2.9198667 SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2947, PayloadLen=0, Seq=1989620992, Ack=2582985184, Win=64138 (scale factor 0x0) = 64138 {TCP:9, IPv4:1} 87 7:51:58 AM 1/6/2011 2.9211821 SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2947, PayloadLen=0, Seq=1989620992, Ack=2582985184, Win=64138 (scale factor 0x0) = 64138 {TCP:9, IPv4:1} 88 7:51:58 AM 1/6/2011 2.9214131 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2947, DstPort=1001, PayloadLen=0, Seq=2582985184, Ack=1989620993, Win=65533 (scale factor 0x0) = 65533 {TCP:9, IPv4:1} 89 7:51:58 AM 1/6/2011 2.9234402 System 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2948, DstPort=1001, PayloadLen=0, Seq=3859367591, Ack=0, Win=65535 ( ) = 65535 {TCP:10, IPv4:1} 96 7:52:01 AM 1/6/2011 5.7774057 System 192.168.100.82 SSC-PC TCP TCP:[SynReTransmit #89]Flags=......S., SrcPort=2948, DstPort=1001, PayloadLen=0, Seq=3859367591, Ack=0, Win=65535 ( ) = 65535 {TCP:10, IPv4:1} 97 7:52:01 AM 1/6/2011 5.7775124 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2948, PayloadLen=0, Seq=2545179182, Ack=3859367592, Win=8192 ( Scale factor not supported ) = 8192 {TCP:10, IPv4:1} 98 7:52:01 AM 1/6/2011 5.7777987 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2948, DstPort=1001, PayloadLen=0, Seq=3859367592, Ack=2545179183, Win=65535 (scale factor 0x0) = 65535 {TCP:10, IPv4:1} 99 7:52:01 AM 1/6/2011 5.7782178 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2948, PayloadLen=1, Seq=2545179183 - 2545179184, Ack=3859367592, Win=64240 (scale factor 0x0) = 64240 {TCP:10, IPv4:1} 100 7:52:01 AM 1/6/2011 5.7946437 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2948, DstPort=1001, PayloadLen=2, Seq=3859367592 - 3859367594, Ack=2545179184, Win=65534 (scale factor 0x0) = 65534 {TCP:10, IPv4:1} 102 7:52:02 AM 1/6/2011 6.0063653 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2948, PayloadLen=0, Seq=2545179184, Ack=3859367594, Win=64238 (scale factor 0x0) = 64238 {TCP:10, IPv4:1} 103 7:52:02 AM 1/6/2011 6.0066546 System 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2948, DstPort=1001, PayloadLen=100, Seq=3859367594 - 3859367694, Ack=2545179184, Win=65534 (scale factor 0x0) = 65534 {TCP:10, IPv4:1} 104 7:52:02 AM 1/6/2011 6.0220126 System SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2948, PayloadLen=1, Seq=2545179184 - 2545179185, Ack=3859367694, Win=64138 (scale factor 0x0) = 64138 {TCP:10, IPv4:1} 105 7:52:02 AM 1/6/2011 6.0262248 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2948, PayloadLen=0, Seq=2545179185, Ack=3859367694, Win=64138 (scale factor 0x0) = 64138 {TCP:10, IPv4:1} 106 7:52:02 AM 1/6/2011 6.0263868 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2948, DstPort=1001, PayloadLen=0, Seq=3859367694, Ack=2545179186, Win=65533 (scale factor 0x0) = 65533 {TCP:10, IPv4:1} 107 7:52:02 AM 1/6/2011 6.0290320 System 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2948, DstPort=1001, PayloadLen=0, Seq=3859367694, Ack=2545179186, Win=65533 (scale factor 0x0) = 65533 {TCP:10, IPv4:1} 108 7:52:02 AM 1/6/2011 6.0290573 System SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2948, PayloadLen=0, Seq=2545179186, Ack=3859367695, Win=64138 (scale factor 0x0) = 64138 {TCP:10, IPv4:1} 109 7:52:02 AM 1/6/2011 6.0327196 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=......S., SrcPort=2949, DstPort=1001, PayloadLen=0, Seq=482055578, Ack=0, Win=65535 ( ) = 65535 {TCP:11, IPv4:1} 110 7:52:02 AM 1/6/2011 6.0327907 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A..S., SrcPort=1001, DstPort=2949, PayloadLen=0, Seq=3967905733, Ack=482055579, Win=8192 ( Scale factor not supported ) = 8192 {TCP:11, IPv4:1} 111 7:52:02 AM 1/6/2011 6.0330220 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2949, DstPort=1001, PayloadLen=0, Seq=482055579, Ack=3967905734, Win=65535 (scale factor 0x0) = 65535 {TCP:11, IPv4:1} 112 7:52:02 AM 1/6/2011 6.0331779 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2949, PayloadLen=1, Seq=3967905734 - 3967905735, Ack=482055579, Win=64240 (scale factor 0x0) = 64240 {TCP:11, IPv4:1} 113 7:52:02 AM 1/6/2011 6.0446192 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2949, DstPort=1001, PayloadLen=2, Seq=482055579 - 482055581, Ack=3967905735, Win=65534 (scale factor 0x0) = 65534 {TCP:11, IPv4:1} 115 7:52:02 AM 1/6/2011 6.2559936 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2949, PayloadLen=0, Seq=3967905735, Ack=482055581, Win=64238 (scale factor 0x0) = 64238 {TCP:11, IPv4:1} 116 7:52:02 AM 1/6/2011 6.2562319 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...AP..., SrcPort=2949, DstPort=1001, PayloadLen=100, Seq=482055581 - 482055681, Ack=3967905735, Win=65534 (scale factor 0x0) = 65534 {TCP:11, IPv4:1} 117 7:52:02 AM 1/6/2011 6.2715891 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...AP..., SrcPort=1001, DstPort=2949, PayloadLen=1, Seq=3967905735 - 3967905736, Ack=482055681, Win=64138 (scale factor 0x0) = 64138 {TCP:11, IPv4:1} 118 7:52:02 AM 1/6/2011 6.2737772 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...F, SrcPort=1001, DstPort=2949, PayloadLen=0, Seq=3967905736, Ack=482055681, Win=64138 (scale factor 0x0) = 64138 {TCP:11, IPv4:1} 119 7:52:02 AM 1/6/2011 6.2757298 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...., SrcPort=2949, DstPort=1001, PayloadLen=0, Seq=482055681, Ack=3967905737, Win=65533 (scale factor 0x0) = 65533 {TCP:11, IPv4:1} 120 7:52:02 AM 1/6/2011 6.2791200 Server.exe 192.168.100.82 SSC-PC TCP TCP:Flags=...A...F, SrcPort=2949, DstPort=1001, PayloadLen=0, Seq=482055681, Ack=3967905737, Win=65533 (scale factor 0x0) = 65533 {TCP:11, IPv4:1} 121 7:52:02 AM 1/6/2011 6.2791464 Server.exe SSC-PC 192.168.100.82 TCP TCP:Flags=...A...., SrcPort=1001, DstPort=2949, PayloadLen=0, Seq=3967905737, Ack=482055682, Win=64138 (scale factor 0x0) = 64138 {TCP:11, IPv4:1} Sascha
Free Windows Admin Tool Kit Click here and download it now
January 6th, 2011 8:03am

Hello Sascha, What is the Client / Server mode application? Could you please check the product manual or contact the software vendor to confirm which port should be open on the firewall for the application. Based on the latest network traffic, the application is trying to ping through Port 2942 to Port 2949. Therefore, I think there should be some exceptions added on the firewall. Thanks. Regards, MiyaThis posting is provided "AS IS" with no warranties, and confers no rights. | Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
January 7th, 2011 10:21am

Hi, This is our application we have control over both ends. We use this communication logic for over 10 years now and we did never get this sort of problem with a Windows Firewall. The ports that you see in the communication log are the ephemeral ports used by the client application. Each time the client application establishes a communication to a known port (1001) the system will open a port on the client system and use it has the endpoint for the TCP\IP communication. Once the connection is closed that port will be in a lingering state for a certain amount of time (this is managed by the OS). When the client opens a new connection the OS will use the next available port. There were already firewall rules in the Inbound Rules that open UDP and TCP all ports for the application. I have added rules to open the ports in the Outbound Rule. Whit no changes to the results. I do not believe this is a Firewall rules problem, because in my test if both computer are running a 64 bits OS there is no delay. Thank you Sascha
Free Windows Admin Tool Kit Click here and download it now
January 13th, 2011 9:17am

Hi Miya, Any news on this? Thank you Sascha
January 24th, 2011 8:33am

Hello Sascha, Thanks for your feedback. I am sorry that I didn't notice the previous post of you. I think this issue needs some support in MSDN forum on Windows development topics. From our side, it is difficult to go any further to find out why the network monitor sections on endpoint mapping repeats several times during the client and server communications. It may require some code analysis to confirm the self-developed application to run smoothly on Windows 7, so the development support team may be the better resource. Please consider to start a new thread in the following forum: Peer-to-Peer Networking http://social.msdn.microsoft.com/Forums/en-US/peertopeer/threads I am still glad to provide helps for your needs. Thanks for your patience and understanding. Best Regards, Miya Yao TechNet Subscriber Support in forum. If you have any feedback on our support, please contact tngfb@microsoft.comThis posting is provided "AS IS" with no warranties, and confers no rights. | Please remember to click "Mark as Answer" on the post that helps you, and to click "Unmark as Answer" if a marked post does not actually answer your question. This can be beneficial to other community members reading the thread.
Free Windows Admin Tool Kit Click here and download it now
January 24th, 2011 9:45am

http://social.msdn.microsoft.com/Forums/en-US/peertopeer/thread/15c3f356-6c39-49a6-b9d6-e6b03c7069c6
January 28th, 2011 2:35pm

This topic is archived. No further replies will be accepted.

Other recent topics Other recent topics