LinuxQuestions.org
Visit Jeremy's Blog.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-08-2004, 07:19 PM   #1
Skunk_Face
Member
 
Registered: Jan 2004
Posts: 54

Rep: Reputation: 15
Need help blocking fastrack P2P


I need some info on how to block p2p traffic (ie kazaa, imesh, overnet etc)
The old method of blocking ports doesnt seem to work anymore coz the new p2p clients are able to port hop and blocking the servers have become a painstaking task as the numbers just keep growing.

I have searched and found an article on ftwall (http://www.lowth.com/p2pwall) and was wondering if anyone here has experience with this particular application. My concern is whether or not it can successfully block all p2p traffic and whether setting the QUEUE command in iptables will cause a bottleneck for all other legitamate network traffic??
 
Old 02-08-2004, 07:53 PM   #2
jtshaw
Senior Member
 
Registered: Nov 2000
Location: Seattle, WA USA
Distribution: Ubuntu @ Home, RHEL @ Work
Posts: 3,892
Blog Entries: 1

Rep: Reputation: 67
It shouldn't cause a bottle neck for other traffic. Those p2p clients can be evil can't they.... stupid things always clog the upstream at colleges until the admins get annoyed to the point they filter there packets out.
 
Old 02-09-2004, 12:49 AM   #3
di11rod
Member
 
Registered: Jan 2004
Location: Austin, TEXAS
Distribution: CentOS 6.5
Posts: 211

Rep: Reputation: 32
No. These types of applications actually look for packet fingerprints and limits packets specific to p2p or whatever applications you desire.

Check out:

http://freshmeat.net/projects/arbitrator/

A real good way to round up a bunch of free packet shapers for linux is to visit

http://www.freshmeat.net

and search for 'bandwidth'....


This isn't so much of a security issue as it is a networking issue. Perhaps that forum might be a better resource for guidance on this topic...

good luck,

di11rod
 
Old 02-09-2004, 01:05 AM   #4
phobox
Member
 
Registered: Dec 2003
Location: Columbus, OH USA
Distribution: Debian Knoppix Kanotix Sidux
Posts: 73

Rep: Reputation: 15
Try this one:

http://freshmeat.net/projects/l7-fil...ease_id=150643
 
Old 02-11-2004, 07:12 PM   #5
Skunk_Face
Member
 
Registered: Jan 2004
Posts: 54

Original Poster
Rep: Reputation: 15
ok thanks for the info peeps.....i've finally got ftwall running just as i wanted it to ...and blocking kazaa works like a charm now. However im still facing problems blocking other p2p clients like winmx, bearshare etc. I installed p2pmon and seems like winmx is my next target...lucky for me it seems to run off a standard port which will prolly make blocking it easier.

Arbitrator sounds interesting but seems like i need to patch the kernel to get it running. NOT something i really enjoy doing (seeing as how i f**ked up the last 3 times i did that ). If anyone has a link to show me how to patch & compile the kernel (keeping all my config & modules intact) would really appreciate it . Oh and btw ....am on rh9 which boots off grub.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Blocking p2p to the users on my lan tomazN Linux - Networking 4 11-30-2005 06:28 AM
Risk of Linux P2P vs. Windows P2P software snatale1 Linux - Software 2 12-04-2004 07:14 PM
Problems with Raid on Fastrack 66 kirby Linux - Newbie 0 12-18-2003 08:26 AM
gift fastrack installing problem TweakerFD Linux - Software 4 08-07-2003 07:04 PM
Fastrack Dual AMD Drivers new Kernel Help MMCSOrion Linux - General 0 05-22-2003 01:27 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 08:28 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration