Linux Netfilter discussions
 help / color / mirror / Atom feed
* Filtering Yahoo Messenger Port
@ 2003-05-05  0:44 Voltaire Pascual
  2003-05-05  2:01 ` Julius Wijaya
                   ` (2 more replies)
  0 siblings, 3 replies; 4+ messages in thread
From: Voltaire Pascual @ 2003-05-05  0:44 UTC (permalink / raw)
  To: netfilter

[-- Attachment #1: Type: text/plain, Size: 221 bytes --]

Hi there... got one newbie question here. Just wondering how can i block yahoo messenger port using IP tables in my box. Clients using YM is behind this box.  YM is using all possible ports even port 80.

TIA
/Voltaire

[-- Attachment #2: Type: text/html, Size: 713 bytes --]

^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: Filtering Yahoo Messenger Port
  2003-05-05  0:44 Filtering Yahoo Messenger Port Voltaire Pascual
@ 2003-05-05  2:01 ` Julius Wijaya
  2003-05-05  2:07 ` Paul
  2003-05-05  2:59 ` Joel Newkirk
  2 siblings, 0 replies; 4+ messages in thread
From: Julius Wijaya @ 2003-05-05  2:01 UTC (permalink / raw)
  To: Voltaire Pascual, netfilter

just block all the connection to yahoo msg server:

scs-fooa.yahoo.com
scs-foob.yahoo.com
scs-fooc.yahoo.com
scs-food.yahoo.com
scs-fooe.yahoo.com
scs-foof.yahoo.com

that is the list I got so far,  I am rejecting the connection to those
servers after my DNS chain rules so when we put the servers name instead of
ip address, it can resolve all the ip address to that server.

if you just want to block certain range of ip from the LAN, check the lates
patch-o-matic for iptables.

http://www.netfilter.org/

regards.
JW

*********** REPLY SEPARATOR  ***********

On 05/05/2003 at 8:44 AM Voltaire Pascual wrote:

>Hi there... got one newbie question here. Just wondering how can i block
>yahoo messenger port using IP tables in my box. Clients using YM is behind
>this box.  YM is using all possible ports even port 80.
>
>TIA
>/Voltaire





^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: Filtering Yahoo Messenger Port
  2003-05-05  0:44 Filtering Yahoo Messenger Port Voltaire Pascual
  2003-05-05  2:01 ` Julius Wijaya
@ 2003-05-05  2:07 ` Paul
  2003-05-05  2:59 ` Joel Newkirk
  2 siblings, 0 replies; 4+ messages in thread
From: Paul @ 2003-05-05  2:07 UTC (permalink / raw)
  To: Voltaire Pascual, netfilter

try blocking a certain destination..

ie i use scs.yahoo.com to connect to yahoo messenger,
there may be more out there, but just drop any packets
that may be trying to goto that destination.

--- Voltaire Pascual <voltaire@voltaire.servebeer.com>
wrote:
> Hi there... got one newbie question here. Just
> wondering how can i block yahoo messenger port using
> IP tables in my box. Clients using YM is behind this
> box.  YM is using all possible ports even port 80.
> 
> TIA
> /Voltaire


__________________________________
Do you Yahoo!?
The New Yahoo! Search - Faster. Easier. Bingo.
http://search.yahoo.com


^ permalink raw reply	[flat|nested] 4+ messages in thread

* Re: Filtering Yahoo Messenger Port
  2003-05-05  0:44 Filtering Yahoo Messenger Port Voltaire Pascual
  2003-05-05  2:01 ` Julius Wijaya
  2003-05-05  2:07 ` Paul
@ 2003-05-05  2:59 ` Joel Newkirk
  2 siblings, 0 replies; 4+ messages in thread
From: Joel Newkirk @ 2003-05-05  2:59 UTC (permalink / raw)
  To: Voltaire Pascual; +Cc: netfilter

On Sun, 2003-05-04 at 20:44, Voltaire Pascual wrote:
> Hi there... got one newbie question here. Just wondering how can
> i block yahoo messenger port using IP tables in my box. Clients using
> YM is behind this box.  YM is using all possible ports even port 80.
>  
> TIA
> /Voltaire

IIRC I collected this data from two different locations, honestly can't
attribute proper credit now.

/sbin/iptables -A FORWARD -d 63.216.136.22     -j DROP
/sbin/iptables -A FORWARD -d 66.135.224.142    -j DROP
/sbin/iptables -A FORWARD -d 66.136.175.132    -j DROP
/sbin/iptables -A FORWARD -d 66.163.168.105    -j DROP
/sbin/iptables -A FORWARD -d 66.163.172.117    -j DROP
/sbin/iptables -A FORWARD -d 66.163.173.76     -j DROP
/sbin/iptables -A FORWARD -d 66.163.173.77     -j DROP
/sbin/iptables -A FORWARD -d 66.163.173.78     -j DROP
/sbin/iptables -A FORWARD -d 66.163.173.203    -j DROP
/sbin/iptables -A FORWARD -d 66.163.175.128    -j DROP
/sbin/iptables -A FORWARD -d 66.163.178.78     -j DROP
/sbin/iptables -A FORWARD -d 204.71.200.36     -j DROP
/sbin/iptables -A FORWARD -d 204.71.200.37     -j DROP
/sbin/iptables -A FORWARD -d 204.71.201.134    -j DROP
/sbin/iptables -A FORWARD -d 204.71.201.141    -j DROP
/sbin/iptables -A FORWARD -d 216.136.173.172   -j DROP
/sbin/iptables -A FORWARD -d 216.136.173.179   -j DROP
/sbin/iptables -A FORWARD -d 216.136.175.132   -j DROP
/sbin/iptables -A FORWARD -d 216.136.175.142   -j DROP
/sbin/iptables -A FORWARD -d 216.136.175.143   -j DROP
/sbin/iptables -A FORWARD -d 216.136.175.144   -j DROP
/sbin/iptables -A FORWARD -d 216.136.175.145   -j DROP
/sbin/iptables -A FORWARD -d 216.136.175.145   -j DROP
/sbin/iptables -A FORWARD -d 216.136.175.226   -j DROP
/sbin/iptables -A FORWARD -d 216.136.224.134   -j DROP
/sbin/iptables -A FORWARD -d 216.136.224.142   -j DROP
/sbin/iptables -A FORWARD -d 216.136.224.213   -j DROP
/sbin/iptables -A FORWARD -d 216.136.224.213   -j DROP
/sbin/iptables -A FORWARD -d 216.136.224.214   -j DROP
/sbin/iptables -A FORWARD -d 216.136.225.12    -j DROP
/sbin/iptables -A FORWARD -d 216.136.226.117   -j DROP
/sbin/iptables -A FORWARD -d 216.136.226.118   -j DROP
/sbin/iptables -A FORWARD -d 216.136.226.209   -j DROP
/sbin/iptables -A FORWARD -d 216.136.226.210   -j DROP
/sbin/iptables -A FORWARD -d 216.136.227.168   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.129   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.130   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.131   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.133   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.135   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.148   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.151   -j DROP
/sbin/iptables -A FORWARD -d 216.136.233.152   -j DROP

j




^ permalink raw reply	[flat|nested] 4+ messages in thread

end of thread, other threads:[~2003-05-05  2:59 UTC | newest]

Thread overview: 4+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2003-05-05  0:44 Filtering Yahoo Messenger Port Voltaire Pascual
2003-05-05  2:01 ` Julius Wijaya
2003-05-05  2:07 ` Paul
2003-05-05  2:59 ` Joel Newkirk

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox