From mboxrd@z Thu Jan 1 00:00:00 1970 From: Michael Gale Subject: Re: blocking msn 6.x Date: Tue, 9 Dec 2003 10:24:54 -0700 Sender: netfilter-admin@lists.netfilter.org Message-ID: <20031209102454.737c8dc9.mgale@utilitran.com> References: <1070990020.1958.16.camel@pepelui.baicom.com> Mime-Version: 1.0 Content-Transfer-Encoding: 7bit Return-path: In-Reply-To: <1070990020.1958.16.camel@pepelui.baicom.com> Errors-To: netfilter-admin@lists.netfilter.org List-Help: List-Post: List-Subscribe: , List-Id: List-Unsubscribe: , List-Archive: Content-Type: text/plain; charset="us-ascii" To: netfilter@lists.netfilter.org Is the MSN packets TOS field different then a regular web surfing packets ? If so you could block it by the TOS field. Michael. On Tue, 09 Dec 2003 14:13:40 -0300 Alexis wrote: > Hello, how can we block the use of the msn messenger with iptables? > > ive tried blocking dport 1863, but the client tries then port 80 , port > 443, and i cannot block those ports. > > Then ive blocked some networks of M$ but i had to remove the rules > because some people uses hotmail. > > Any help? (i think that packet inspection could see if the packet to > port 80 is a GET/POST or a different packet to mark.... but how can i do > this????) > > > any help?? > > Thanks in advance and best regards > > > -- > Alexis > > -- Michael Gale Network Administrator Utilitran Corporation