Linux Netfilter discussions
 help / color / mirror / Atom feed
From: Khanh Tran <khanh@slc.edu>
To: 'ASC - Ronald Roeleveld' <r.roeleveld@ascinternational.nl>
Cc: "'netfilter@lists.netfilter.org'" <netfilter@lists.netfilter.org>
Subject: RE: Blocking downloads
Date: Wed, 5 Feb 2003 11:06:45 -0500	[thread overview]
Message-ID: <01CEA3A5B8B2D511890F0002A5870AEC64EBAD@EXCHANGE> (raw)

[-- Attachment #1: Type: text/plain, Size: 2059 bytes --]

Well, that is going to be a little rough since most file downloads happen
over the same port as the http traffic (port 80).  You could block all ports
besides 80, but they'd still be able to download files that were http links.
You might want to look into setting file permissions or doing some kind of
kiosk-mode on your local workstations.
 
Khanh Tran
Network Operations
Sarah Lawrence College
1 Mead Way
Bronxville, NY 10708
(914) 395-2639


-----Original Message-----
From: ASC - Ronald Roeleveld [mailto:r.roeleveld@ascinternational.nl]
Sent: Wednesday, February 05, 2003 11:02 AM
To: 'Khanh Tran'
Cc: 'netfilter@lists.netfilter.org'
Subject: RE: Blocking downloads


What I want is that clients cannot, let's say with Internet Explorer or
Mozzila, download files from the internet, but can browse the internet.
 

-----Original Message-----
From: Khanh Tran [mailto:khanh@slc.edu]
Sent: woensdag 5 februari 2003 16:45
To: 'ASC - Ronald Roeleveld'; 'netfilter@lists.netfilter.org'
Subject: RE: Blocking downloads


You can very easily block certain clients based on either MAC address and/or
IP address.  As for the ports, well that depends on the application you want
to block (ie. FTP, Kazaa, web, NNTP, etc).
 
Khanh Tran
Network Operations
Sarah Lawrence College



-----Original Message-----
From: ASC - Ronald Roeleveld [mailto:r.roeleveld@ascinternational.nl]
Sent: Wednesday, February 05, 2003 10:38 AM
To: 'netfilter@lists.netfilter.org'
Subject: Blocking downloads


Hey everyone,
 
Since I want to spare my download speed, and dont want clients to download
freaking warez, would it be possible to block downloads with iptables for
certain clients???
And if it's possible which ports need to closed?
 
Thanks in advance,
Ronald Roeleveld 
System Administrator 

ASCINTERNATIONAL 
Vlietweg 17c, 2266 KA, Leidschendam, The Netherlands 
Tel. +31 (0)70 3178400, Fax +31 (0)70 3204760
E-mail: r.roeleveld@ascinternational.nl
<mailto:r.roeleveld@ascinternational.nl> , Website:
http://www.ascinternational.nl <http://www.ascinternational.nl/>  

 


[-- Attachment #2: Type: text/html, Size: 4937 bytes --]

             reply	other threads:[~2003-02-05 16:06 UTC|newest]

Thread overview: 5+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2003-02-05 16:06 Khanh Tran [this message]
  -- strict thread matches above, loose matches on Subject: below --
2003-02-05 16:01 Blocking downloads ASC - Ronald Roeleveld
2003-02-05 18:16 ` Craig Davison
2003-02-05 15:45 Khanh Tran
2003-02-05 15:37 ASC - Ronald Roeleveld

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=01CEA3A5B8B2D511890F0002A5870AEC64EBAD@EXCHANGE \
    --to=khanh@slc.edu \
    --cc=netfilter@lists.netfilter.org \
    --cc=r.roeleveld@ascinternational.nl \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox