LinuxQuestions.org
Review your favorite Linux distribution.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 05-19-2014, 11:22 AM   #1
Linux_Kidd
Member
 
Registered: Jan 2006
Location: USA
Posts: 737

Rep: Reputation: 78
Iptables block IRC


so, IRC can be elusive when using dst ports (egress across a fw, etc). whats the best way to block IRC, say using iptables?
 
Old 05-21-2014, 02:49 AM   #2
TenTenths
Senior Member
 
Registered: Aug 2011
Location: Dublin
Distribution: Centos 5 / 6 / 7
Posts: 3,474

Rep: Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553
Block everything outbound except on the ports you need, http/https/dns/smtp/etc.

Your iptables box should take care of setting up openings for ephemeral ports as required.
 
Old 05-28-2014, 05:29 PM   #3
Linux_Kidd
Member
 
Registered: Jan 2006
Location: USA
Posts: 737

Original Poster
Rep: Reputation: 78
Quote:
Originally Posted by TenTenths View Post
Block everything outbound except on the ports you need, http/https/dns/smtp/etc.

Your iptables box should take care of setting up openings for ephemeral ports as required.

yikes, doesnt some IRC clients probe for outbound open ports like tcp80 & 443 ??
 
Old 05-29-2014, 01:54 AM   #4
TenTenths
Senior Member
 
Registered: Aug 2011
Location: Dublin
Distribution: Centos 5 / 6 / 7
Posts: 3,474

Rep: Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553Reputation: 1553
If you allow any outbound traffic through your firewall you will NEVER be able to stop someone that wants to use IRC, or indeed anything.

It's even easier these days, get cheap VPS, set SSH to listen on port 443, use SSH tunnelling. That's most basic firewalls defeated.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
CBL Lookup Utility block IP adress for IRC kaplis Linux - Security 4 07-30-2006 11:20 PM
CBL Lookup Utility block IP adress for IRC.LV kaplis Linux - Software 1 07-15-2006 06:07 AM
IPTables and PPTPD :S (to block or not to block) thewonka Linux - Networking 0 03-24-2005 06:58 PM
iptables and IRC clients. qwijibow Linux - Newbie 1 05-02-2004 11:41 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:36 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration