Anonymizer Universal™ Windows Platform

Windows Firewall Configurations | Software

ZoneAlarm Internet/Extreme Security Firewall Configuration

To ensure your software firewall is not blocking Anonymizer Universal‚ please follow these steps. We have provided the configuration for Zone Alarm below as an example of the needed settings.

Add universal.anonymizer.com as a Trusted Network within your Firewall.

If you have the option of unblocking certain ports‚ please ensure that port 500 and 4500 are open to incoming and outgoing UDP traffic to the universal.anonymizer.com domain.

In ZoneAlarm Internet Security and ZoneAlarm Extreme Security:

Create Firewall Trusted Zone

It is necessary to add the Anonymizer Universal VPN connection to your Trusted Zones so ZoneAlarm will recognize that you are connecting to the Anonymizer server for the first time‚ similar to the way it recognizes that you are connecting to a new Wired or Wireless network. To accomplish this‚ simply follow these steps.

ZoneAlarm screenshot 1
Step 1

Open the “ZoneAlarm Control Center” and click on “Firewall” in the left-hand column. Then‚ choose “Zones” underneath Firewall‚ and click “Add” in the bottom right. Select “Host/Site.”

ZoneAlarm screenshot 2
Step 2

Enter the Host name “universal.anonymizer.com” with Description “Anonymizer Universal” as a “Trusted” Zone and Click “OK.”

ZoneAlarm screenshot 3
Step 3

Finally‚ click “Apply‚” and then follow the same steps to add the Host name “greenlight.anonymizer.com” with Description “Anonymizer Universal IP check” as a “Trusted” Zone. Click “OK‚” and then “Apply.”

ZoneAlarm screenshot 4

Customize Program Control Settings

It is also necessary to set Anonymizer Universal as a custom‚ Super Trusted Program. Follow this simple step.

ZoneAlarm screenshot 5
Click to enlarge


Select the “Program Control” section on the left navigation and then “Programs” directly beneath. Choose “Anonymizer Universal.” Update the settings to “Custom” in the “Smart Defense” column‚ “Super Trusted” under the “Trust Level” column‚ and make sure there are green checkmarks for all entries‚ “Access‚” “Server‚” and “Send Mail.” To change these settings‚ simply left click on the entry and select “Allow.”

Once you have completed these directions and Anonymizer Universal has been updated in the manner illustrated below‚ ZoneAlarm will then allow connections to Anonymizer Universal without interruption.

ZoneAlarm screenshot 6
Click to enlarge

Allow UDP VPN Traffic—to allow UDP VPN traffic‚ follow these simple steps:

Step 1

Select the “Firewall” section in the column on the left. Then‚ click on the “Custom” button in the “Internet Zone Security” section.

Step 2

Select the “Trusted Zone” tab. Scroll down to find the entry that says “Allow incoming UDP ports: (none selected).” Check this box‚ and then click “(none selected).” You will see an entry field open at the bottom of the window. Enter “500‚ 4500‚ 1701‚ 1702” and then click “Apply.”

Step 3

Next‚ choose the “Allow outgoing UDP ports: (none selected).” Check this box‚ and then click “(none selected)” as you did in step 2. You will see an entry field at the bottom of the window. Enter “500‚ 4500‚ 1701‚ 1702” and then click “Apply.”

Step 4

Ensure that you now see an entry for “Allow incoming UDP ports: 500‚ 4500‚ 1701‚ 1702” and “Allow outgoing UDP ports: 500‚ 4500‚ 1701‚ 1702” and then click “OK.”

Step 5

Next‚ select the “Internet Zone” tab. Scroll down to find the entry that says “Allow incoming UDP ports: (none selected).” Check the box‚ and then click “(none selected).” You will see an entry field open at the bottom of the window. Enter “500‚ 4500‚ 1701‚ 1702” and then click “Apply.”

Step 6

Next‚ choose the “Allow outgoing UDP ports: (none selected).” Check this box‚ and then click “(none selected)” as you did in step 5. You will see an entry field at the bottom of the window. Enter “500‚ 4500‚ 1701‚ 1702” and then click “Apply.”

Step 7

Ensure that you now see an entry for “Allow incoming UDP ports: 500‚ 4500‚ 1701‚ 1702” and “Allow outgoing UDP ports: 500‚ 4500‚ 1701‚ 1702” and then click “OK.”

Norton Internet Security Firewall Configuration

To ensure your software firewall is not blocking Anonymizer Universal‚ please configure your Norton Internet Security Firewall connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so‚ access your Norton Internet Security software and follow these steps.

Step 1

In the main screen‚ click on the “Settings” button in the middle “Network” section.

Step 2

When the new window opens up‚ scroll down to “Smart Firewall.” Next‚ click on “Configure” next to the “Program Control” section.

Step 3

Locate “Anonymizer Universal” in the list of programs and change the dropdown from “Auto” to “Allow.” Click “Apply‚” and then “OK.”

Step 4

Click on “Configure” next to “Advanced Settings” in the “Smart Firewall” section.

Step 5

Click “Configure” next to “General Rules” at the top of the page.

Step 6

Select “Add.”

Step 7

Select “Allow” from the list‚ and then “Next.”

Step 8

Select “Connections to and from other computers‚” and then “Next.”

Step 9

Select “Any computer” from the list‚ and then “Next.”

Step 10

Change the Protocol dropdown menu to “UDP” and select “Only communications that match all types and ports listed below.” Click “Add.”

Step 11

Select “Individually specified Ports” under “Filter by” and “Remote” under “Locality.” In the “Enter port number or numbers‚” type “500 4500.” Make sure you include the space as indicated in the example below. Click “OK.”

Step 12

Click “Next.”

Step 13

Check “Apply this rule‚” and then “Next.”

Step 14

Name your rule something that is related to Anonymizer so you will recognize it. We suggest something like “Anonymizer Universal Firewall Rule.” Select “Next.”

Step 15

Select “Finish.”

Step 16

Click on the rule you created and then select “Move Up” until the rule is at the top of the list. The traffic rules will prioritize themselves in the order listed‚ so if two rules counteract each other‚ the top one has priority.

Step 17

Finally‚ click “OK” and then “OK” two more times.

Norton 360 Firewall Configuration

To ensure your software firewall is not blocking Anonymizer Universal‚ please configure your Norton 360 Firewall connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so‚ access your Norton 360 software and follow these steps.

Step 1

In the main Norton window‚ click on the “Settings” button at the top of the window.

Step 2

When the next window opens up‚ click on “Firewall” on the left.

Step 3

Select the “Program Rules” tab.

Step 4

Locate “Anonymizer Universal” in the list of programs. Under “Access” on the right‚ change the dropdown menu from “Auto” to “Allow.” Click “Apply.”

Step 5

Select the “Traffic Rules” tab‚ and then click “Add.”

Step 6

Select “Allow” and then “Next.”

Step 7

Select “Connections to and from other computers‚” and then “Next.”

Step 8

Select “Any computer‚” and then “Next.”

Step 9

Change the protocol dropdown menu to “UDP” and select “Only communications that match all types and ports listed below.” Click “Add.”

Step 10

Select “Individually specified Ports” under “Filter by” and “Remote” under “Locality.” In the port entry field type “500 4500 1701 1702.” Make sure you include spaces between the numbers as illustrated in the diagram below. Click “OK.”

Step 11

Click “Next.”

Step 12

Check “Apply this rule” and click “Next.”

Step 13

Name your rule something that is related to Anonymizer so you will recognize it. We suggest something like “Anonymizer Universal Rule.” Select “Next.”

Step 14

Select “Finish.”

Step 15

Click on the rule you created and then select “Move Up” until the rule is at the top of the list. The traffic rules will prioritize themselves in the order listed‚ so if two rules counteract each other‚ the top one has priority.

Step 16

Finally‚ select “Apply.”

BitDefender Firewall Configuration

To ensure your software firewall is not blocking Anonymizer Universal‚ please configure your BitDefender connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so‚ follow these steps.

Step 1

Open the BitDefender Internet Security interface by double-clicking on the BitDefender icon at the bottom right-hand side of your computer screen near the clock (in Windows 7 you may have to first click the triangular “Show Hidden Icons” to find this icon). You will see the interface below.

Step 2

Click “Firewall” on the menu on the left.

Step 3

Scroll down on the right and click “Advanced.”

Step 4

You will see the menu below. Double click on rule 25‚ “svchost.exe.”

Step 5

The following window will appear.

Step 6

In the “Action” section‚ choose “Allow‚” and then “OK.”

Step 7

And then “Close” in the “Advanced Rules” Window.

Step 8

Close your BitDefender software.

McAfee Firewall Configuration

To ensure your software firewall is not blocking Anonymizer Universal‚ please configure your McAfee connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so‚ follow these steps.

Step 1

Open your McAfee program and select “Firewall,&rdquo and then “Settings.&rdquo

McAfee Firewall Configuration Step 1
Step 2

Scroll down and choose “Program Permissions.&rdquo

McAfee Firewall Configuration Step 2
Step 3

Scroll down and click “Add New Program,&rdquo choose “Full&rdquo from the dropdown menu under “Access,&rdquo and then click browse to add the Anonymizer Universal program.

McAfee Firewall Configuration Step 3
Step 4

Locate the “Anonymizer&rdquo folder in “Program Files.&rdquo

McAfee Firewall Configuration Step 4
Step 5

Open the “Anonymizer Universal&rdquo folder.

McAfee Firewall Configuration Step 5
Step 6

Select “Anonymizer Universal&rdquo (with silver icon).

McAfee Firewall Configuration Step 6
Step 7

Then click “Save.&rdquo

McAfee Firewall Configuration Step 7
Step 8

Click “Program Permissions&rdquo to minimize, and then “Ports and Systems Services.&rdquo

McAfee Firewall Configuration Step 8
Step 9

Scroll down and click “Add,&rdquo enter “Anonymizer Universal&rdquo in the “System Service Name&rdquo and “AU&rdquo in the “System Service Category&rdquo fields. Leave the “Service Description&rdquo box empty.

McAfee Firewall Configuration Step 9
Step 10

Next, enter “500, 4500, 1701-1702&rdquo in the “Local UDP Ports&rdquo field. Select “All PCÕs&rdquo from the dropdown menu next to “Open ports to,&rdquo and then click “Save.&rdquo

McAfee Firewall Configuration Step 10
Step 11

Ensure that the rule is checked and shown as below.

McAfee Firewall Configuration Step 11
Step 12

Next, using the scrollbar on the right, scroll down and click on “Connections.&rdquo

McAfee Firewall Configuration Step 12
Step 13

Click “Add.&rdquo You will see the screen below.

McAfee Firewall Configuration Step 13
Step 14

Under “IP Address Version,&rdquo select “Range,&rdquo and enter “168.143.113.0&rdquo in the “From&rdquo field, and “168.143.113.255&rdquo in the “To&rdquo field as shown below.

McAfee Firewall Configuration Step 14
Step 15

Scroll down and select “Home&rdquo from the dropdown menu next to “Connection Protection Type.&rdquo In the “Description&rdquo box, type “Anonymizer servers.&rdquo

McAfee Firewall Configuration Step 15
Step 16

Click “Save,&rdquo and close your McAfee software.

Step 17

Restart your computer.

Step 18

Open Anonymizer Universal and attempt to connect.

AVG Internet Security Conflict

The AVG firewall settings must be set to “ALLOW ALL” in order to run Anonymizer Universal on your computer.

Please Note: We have had some customers report their contacting AVG directly and requesting a configuration for the exceptions of Ports 500 and 4500. AVG has provided specific instruction to bring the programs into synchronization.

Beyond this, Anonymizer Universal remains incompatible with the AVG Internet Security Suite. We are diligently working with AVG to develop general settings to configure our software with the firewall program.

We have found in the past that a collaborative effort between Anonymizer Technical Support and paying customers of third party programs lead to a quicker resolution of issues. We encourage all our customers to contact AVG and stress the need for compatibility as they are currently focused on a case-by-case basis, rather than an overall solution.

We understand the inconvenience and risk of a disabled firewall. Anonymizer looks forward to providing you with the instruction to configure your system security in the weeks ahead. Thank you for your patience and understanding.

Please follow the instructions below to configure your ESET Smart Security firewall to allow the Anonymizer Universal connection:

We have found that customers using ESET Smart Security have had problems connecting to Anonymizer Universal. Despite creating rules in ESET to allow all the appropriate traffic‚ ESET will still block the Anonymizer Universal connection.

Step 1

To begin‚ open the ESET Smart Security interface by double-clicking on the ESET icon on the bottom right-hand corner of your screen (next to the clock). On the menu on the left‚ click “Setup.


Click to enlarge
Step 2

Then‚ from the menu illustrated below‚ click “Personal Firewall” and click on “Advanced Personal Firewall Setup.


Click to enlarge

With the Personal Firewall option selected on the left‚ change the Filtering Mode on the right to “Automatic mode with exceptions.” Click “OK.


Click to enlarge
Step 3

You will now be back on the Personal Firewall menu. Click on “Configure Rules and Zones.


Click to enlarge

Click the “New” button on the bottom left.


Click to enlarge
Step 4

Next‚ create the rule for Anonymizer Universal. With the “General” tab selected on the top of the window‚ please enter the following settings in the window that appears (see the screenshot for details).

  • Name: Anonymizer Universal
  • Direction: Both
  • Action: Allow
  • Protocol: 255 (click the “Select Protocol” button‚ type in 255‚ and click “OK.”)
  • Profile: For every
  • Additional Action: Log
Step 5

Then‚ click on the “Remote” tab at the top of the window‚ and then “Add Address.” Under Type‚ select “Address Range.” Input the following settings (see screenshot below):

  • Starting: 168.143.113.0
  • Ending Address: 168.143.113.255
Step 6

Click “OK.

Step 7

Click “OK” once again‚ and then “Apply.


Click to enlarge
Step 8

Open Anonymizer Universal and click “Connect.

Please follow the instructions below to configure your Webroot Internet Security Essentials firewall to allow the Anonymizer Universal connection:

To ensure your software firewall is not blocking Anonymizer Universal‚ please configure your Webroot Internet Security Essentials connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so‚ access your Webroot Internet Security Essentials software and follow these steps.

Step 1

In the main Webroot window, click on the “Firewall” button in the column along the left side of the window and the select the blue “Edit Profile Settings” link in the middle of the window.

Webroot Step 1
Step 2

Click on the “Trusted/Untrusted Internet Sites” link in the “Intenet Network Security” zone.

Webroot Step 2
Step 3

Click on the “Add” button in the Trusted Network section.

Webroot Step 3
Step 4

Select the radio button for “URL”. In the Host Name field enter “universal.anonymizer.com” and click “OK”. Repeat Steps 3 and 4 and enter “greenlight.anonymizer.com”. Then click “OK” two more times until you are back on the Main Firewall screen.

Webroot Step 4
Step 5

Select the “Applications” tab. Right click on Anonymizer Universal entry and select “ALLOW Traffic”.

Webroot Step 5

Please follow the instructions below to configure your Webroot Internet Security Complete Firewall to allow the Anonymizer Universal connection:

To ensure your software firewall is not blocking Anonymizer Universal, please configure your Webroot Internet Security Complete connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so, follow these steps.

Step 1

From the main Webroot window, select the “Edit settings” button in the PC Security section.

webroot complete Step 1
Step 2

Select the “Firewall” tab and click on “Applications”. You will see a list of applications populate on the right side of the window. Select the entry labeled “anonymizer universal.exe” so that the entry highlights in blue. Scroll all the way to the right. In the column labeled Allowed Parent, select “Yes” in the dropdown menu. In the column labeled Mode, select “Allow”.

webroot complete Step 2
Step 3

Click on “Security location” on the left side of the window. Then select the “Edit Sites” link on the lower right side of the window.

webroot complete Step 3
Step 4

In the window that opens up, select “Click to add site”. Enter in the URL “universal.anonymizer.com”. Click to add another site and enter the IP address “168.143.113.0” and the subnet mask “255.255.255.0”.

webroot complete Step 4

Please follow the instructions below to configure your Kaspersky Internet Security 2010 firewall to allow the Anonymizer Universal connection:

To ensure your software firewall is not blocking Anonymizer Universal‚ please configure your Kaspersky Internet Security 2010 Firewall connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so‚ access your Kaspersky Internet Security 2010 software and follow these steps.

Step 1

Open the main application window and click “Settings” the right upper corner.

Webroot Step 1
Step 2

Select the “Firewall” component n the “Protection” section. Please make sure that the “Firewall” component is enabled by clicking the “Enable Firewall” box. Click the “Settings” button.

Webroot Step 2
Step 3

Then click the “Filtering rules” tab in the “Firewall” window. Then click the “Add” link.

Webroot Step 3
Step 4

Click on the “Add” link. Select: “Allow” in the “Network rule” window in the “Action” section. Select “Add” in the “Network Service” portion of the window.

Webroot Step 4
Step 5

Enter the following settings in the “Network Rule”: Enter the Name “Anonymizer Universal ”. For the Protocol section, check the “Protocol” checkbox and select “UDP” in the drop-down menu. In the Direction section, select “Inbound/Outbound” Type “500, 4500” for the Remote and Local Ports. When you are finish, click “OK”.

Webroot Step 5
Step 6

Select “Addresses from Group” in the Addresses area. Then click the “Add” button. Enter “Anonymizer Universal” for the name. Click “Add” in Remote Addresses and in enter “168.143.113.0/24” in the box as the Anonymizer IP Address range (without the quotation marks) and click “OK”.

Webroot Step 6
Step 7

Ensure that the “Anonymizer Universal” rule is selected in “Network Service” and click “OK”. Click “OK” again. Scroll to the top of the list of rules and double-click on the folder “Packet Rules”.

Webroot Step 7
Step 8

Click on the “Anonymizer Universal” rule at the bottom of the list and click the “Move up” button until “Anonymizer Universal” is at the top of the list.

Webroot Step 8 Webroot Step 9
Step 9

Click “OK”. Then click “Apply”, then “OK”.

Please follow the instructions below to configure your Trend Micro Internet Security Firewall to allow the Anonymizer Universal connection:

To ensure your software firewall is not blocking Anonymizer Universal, please configure your Trend Micro Internet Security Firewall connection so it will allow the Anonymizer Universal connection and unblock VPN traffic. To do so, access your Trend Micro Internet Security software and follow these steps.

Step 1

Open the Trend Micro interface. Click “Personal Firewall Controls” on the left panel.

trendmicro Step 1
Step 2

Click “Settings” Under Personal Firewall.

trendmicro Step 2
Step 3

Make sure there is a check mark on “Activate Personal Firewall” on the Personal Firewall Settings screen. Click “Advanced Settings”.

trendmicro Step 3
Step 4

Click the “Network Protocol Control” tab. Click “Add”.

trendmicro Step 4
Step 5

Input the following settings into the “Add or Edit Personal Firewall Network Control Rule” window. Enter “Anonymizer Universal Rule” in the Description. Select “Outgoing” in the Connection section. Select “Allow” in the Response section. Then select “UDP” for the Protocol. Add Ports “500, 4500, 1701, 1702” (without quotations) for the Specified Ports. Select “All IP Addresses” for the Types section. Make sure “IPv4 and IPv6” is selected and Click “OK”.

trendmicro Step 5
Step 6

Click “Add” again as referenced in Step 4. Input the following settings into the “Add or Edit Personal Firewall Network Control Rule” window. Enter “Anonymizer Universal Rule” in the Description. Select “Incoming” in the Connection section. Select “Allow” in the Response section. Then select “UDP” for the Protocol. Add Ports “500, 4500, 1701, 1702” (without quotations) for the Specified Ports. Select “All IP Addresses” for the Types section. Make sure “IPv4 and IPv6” is selected and Click “OK”.

trendmicro Step 6
Step 7

Click “OK” again.