Hello,
at first I need to say Thank You for the great firewall app.
I used the Droidwall but there was many of issues which are solved in your app.
So I bought the paid version of AFW+ after trying of the free version and I've donated something too because the app price is low by my opinion.
But I have one problem with Android's internet connection checker which I'm not able to solve myself.
If I have whitelisted only the apps for which I can allow the internet access (and necessary services like a Google play for example), I get the "No data connection" message in message bar at times.
I have already read the light FAQ in app and the full FAQ on your Github pages too, I spend many of time by googling, but I still cannot find the solution.
Yes, I know that if the processes under UID 1000 will be allowed the issue will gone.
But there is too many services under this UID (and many of this is bloatware or spyware by my opinion) so I don't want allow all at once.
So I have the question to you if there is any other solution of this problem - or if I can write my own rule which will allow only the one right process for the internet connection checking.
Or (workaround) - how to suppress the message. I'm not able to do it by standard way.
Thank you
Xiaomi Redmi 2 2GB RAM, Android 4.4.4, MIUI 5.12.31
@CHEF-KOCH When you mention UID 1000/0, do you mean all UIDs in the range of 1000-1999, or do you mean exactly UID 1000?
@CHEF-KOCH That's a fantastic list. Thanks!
Does UID 1000 need to be whitelisted for LAN too? Or just for data connections?
@CHEF-KOCH
Well. I do understand your point of view.
BUT.
As you already stated out you do want to stick to the Google rules. That's alright for me. To some extend.
BUT.
As a user/buyer of AFW+ I do not want the coder to think about what the common user wants and furthermore what is secure for the user. Neither do I want the coder to think about Google's rules because they change all the time - nor do I want the coder to rely upon others to reveal possible security issues. What I want is what is best for the user's privacy.
Up to the time I'm writing this Google's OS is - to some extend - pretty much open. Google's rules will change in the near future and will make much more privacy options unavailable.
Thinking of KK I do not remember to ever had that kind of problem.
I'm sorry but I do not accept your kind of argues. And I'm sorry I have to rely on others to decide for me what's good and what's not.
Always relied on AFW+. I guess, I have to think it over.
Bye.
alternative to allowing 1000 is simply running a terminal command once after a fresh install:
su -c "settings put global captive_portal_detection_enabled 0"
close as invalid. This is by Android design.
If you want to block core OS features, expect the OS to misbehave. If you dont want the OS to misbehave dont block core OS features. If you want to block Android core OS features live with it misbehaving. Easy as that.