Linux Netfilter discussions
 help / color / mirror / Atom feed
From: Kelly Setzer <Kelly.Setzer@placemark.com>
To: paulc@ibiblio.org
Cc: netfilter@lists.netfilter.org
Subject: Re: block kazaa
Date: Tue, 25 Mar 2003 15:45:45 -0600	[thread overview]
Message-ID: <20030325214545.GA1817@placemark.com> (raw)
In-Reply-To: <5.2.0.9.0.20030325212147.00ba2e88@mail.clara.net>

On Tue, Mar 25, 2003 at 09:27:16PM +0000, paulc@ibiblio.org wrote:
> The way I block Kazaa (and the other file sharing applications) is a 
> blanket ban on all ports by default. I then open the ports as I think is 
> appropriate at the firewall. These only include the port 23 for anyone 
> wishing to use telnet. All web and ftp style ports on 80, 21 and the like 
> are handled by a web-proxy to prevent using them for other purposes. All 
> incoming connects (and lots of ICMP messages) are dropped by the firewall 
> also.

In my personal experience, that still allows kazaa clients to download
files.  Uploads are prevented, and that's a good thing if you're
committed to stopping p2p traffic.  However it's only half a solution.

The reality is, fighting p2p traffic is a losing battle.  I suspect
that's one of those things that will have to be addressed by corporate
policy/enforcement and with host-based restrictions (don't let users
install software on their own boxes).

Kelly

--
Kelly Setzer, System Administrator/Architect - Placemark Investments
14180 Dallas Pkwy, Suite 200, Dallas, TX 75240
kelly.setzer@placemark.com  http://www.placemark.com
(972)404-8100x41 (work)       (214) 287-3464 (cell)


  reply	other threads:[~2003-03-25 21:45 UTC|newest]

Thread overview: 11+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
     [not found] <20030325183312.2501.87766.Mailman@kashyyyk>
2003-03-25 21:27 ` block kazaa paulc
2003-03-25 21:45   ` Kelly Setzer [this message]
2003-03-26  5:30   ` Raymond Leach
2003-03-26  8:14     ` Paul Colclough
2003-03-26 15:06     ` Kelly Setzer
2003-03-26 15:14       ` Raymond Leach
2003-03-27 21:14 per j
  -- strict thread matches above, loose matches on Subject: below --
2003-03-25 14:46 realsite internetcafe
2003-03-25 15:27 ` Scott Radvan
2003-03-25 15:57   ` Maciej Soltysiak
2003-03-26  5:22     ` Raymond Leach

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=20030325214545.GA1817@placemark.com \
    --to=kelly.setzer@placemark.com \
    --cc=netfilter@lists.netfilter.org \
    --cc=paulc@ibiblio.org \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html

* If your mail client supports setting the In-Reply-To header
  via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox