LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 05-08-2007, 05:10 AM   #1
linuxss
LQ Newbie
 
Registered: Feb 2007
Posts: 6

Rep: Reputation: 0
Blocking msn,yahoo,giam,skype etc messanger


Dear All Linux Experts ,

I want to block instant messengers such as msn,yahoo,giam,skype etc
through iptables.

I want to block these IM during office time only(9am to 5 pm) and to specific computer or IP but want to open at 1pm to 2pm (lunch time).

How to put it in cron so that iptables blocks at 9am but open at 1pm automatically.


Please help me.
 
Old 05-08-2007, 11:16 PM   #2
Matir
LQ Guru
 
Registered: Nov 2004
Location: San Jose, CA
Distribution: Debian, Arch
Posts: 8,507

Rep: Reputation: 128Reputation: 128
Note that most of these protocols are port-nimble. The only EFFECTIVE way to block them is to block ALL ports and require all traffic to go through a proxy. AIM is known to support several hundred ports, including ports 80, 110, 443, and others.

You could, however, block the default ports. You don't even need a cron job, iptables can use time as a criteria for matching, as shown here: http://linuxgazette.net/108/odonovan.html
 
Old 05-09-2007, 12:14 AM   #3
SlackDaemon
Member
 
Registered: Mar 2006
Distribution: RedHat, Slackware, Experimenting with FreeBSD
Posts: 222

Rep: Reputation: 30
Many of these IM programs can be tunneled through an authorized port to bypass restrictions. You may want to look up the Layer7 filtering project to overcome this.
Layer7 filtering takes a peek at the actual data inside a packet and can be used in conjuction with iptables to form policies.

http://l7-filter.sourceforge.net/
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
SQUID for blocking yahoo and msn [inc squid.conf] chrisfirestar Linux - Security 10 03-03-2008 08:33 AM
how to block all the IM -- skype, googletalk, msn, yahoo, ICQ cksoo Linux - Security 20 10-09-2007 07:08 AM
yahoo messanger shukla_chanchal Linux - General 3 02-16-2006 12:14 PM
AIM and MSN Messanger shof515 Linux - Software 2 11-22-2005 10:11 PM
Yahoo, MSN messanger Starch Linux - Newbie 5 01-31-2005 11:48 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 07:35 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration