All of lore.kernel.org
 help / color / mirror / Atom feed
* blocking msn 6.x
@ 2003-12-09 17:13 Alexis
  2003-12-09 17:24 ` Michael Gale
  0 siblings, 1 reply; 3+ messages in thread
From: Alexis @ 2003-12-09 17:13 UTC (permalink / raw)
  To: netfilter

Hello, how can we block the use of the msn messenger with iptables?

ive tried blocking dport 1863, but the client tries then port 80 , port
443, and i cannot block those ports.

Then ive blocked some networks of M$ but i had to remove the rules
because some people uses hotmail.

Any help? (i think that packet inspection could see if the packet to
port 80 is a GET/POST or a different packet to mark.... but how can i do
this????)


any help??

Thanks in advance and best regards


-- 
Alexis <alexis@attla.net.ar>



^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: blocking msn 6.x
  2003-12-09 17:13 blocking msn 6.x Alexis
@ 2003-12-09 17:24 ` Michael Gale
  2003-12-09 17:44   ` Maciej Soltysiak
  0 siblings, 1 reply; 3+ messages in thread
From: Michael Gale @ 2003-12-09 17:24 UTC (permalink / raw)
  To: netfilter


Is the MSN packets TOS field different then a regular web surfing packets ?

If so you could block it by the TOS field.

Michael.

On Tue, 09 Dec 2003 14:13:40 -0300
Alexis <alexis@attla.net.ar> wrote:

> Hello, how can we block the use of the msn messenger with iptables?
> 
> ive tried blocking dport 1863, but the client tries then port 80 , port
> 443, and i cannot block those ports.
> 
> Then ive blocked some networks of M$ but i had to remove the rules
> because some people uses hotmail.
> 
> Any help? (i think that packet inspection could see if the packet to
> port 80 is a GET/POST or a different packet to mark.... but how can i do
> this????)
> 
> 
> any help??
> 
> Thanks in advance and best regards
> 
> 
> -- 
> Alexis <alexis@attla.net.ar>
> 
> 


-- 
Michael Gale
Network Administrator
Utilitran Corporation


^ permalink raw reply	[flat|nested] 3+ messages in thread

* Re: blocking msn 6.x
  2003-12-09 17:24 ` Michael Gale
@ 2003-12-09 17:44   ` Maciej Soltysiak
  0 siblings, 0 replies; 3+ messages in thread
From: Maciej Soltysiak @ 2003-12-09 17:44 UTC (permalink / raw)
  To: Michael Gale, netfilter

Hi,

try l7filter or ipp2p to do high layer filtering.

Regards,
Maciej



^ permalink raw reply	[flat|nested] 3+ messages in thread

end of thread, other threads:[~2003-12-09 17:44 UTC | newest]

Thread overview: 3+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-12-09 17:13 blocking msn 6.x Alexis
2003-12-09 17:24 ` Michael Gale
2003-12-09 17:44   ` Maciej Soltysiak

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.