LinuxQuestions.org
Download your favorite Linux distribution at LQ ISO.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-02-2006, 06:31 AM   #1
bharathvn
Member
 
Registered: Mar 2005
Distribution: Redhat , Debian
Posts: 43

Rep: Reputation: 15
Block P2P on Shorewall Firewall


Hi,

I like to block P2P Sharing in my network.

can any one help me.

Thanks
Bharathvn
http://expertsxchange.blogspot.com/

Last edited by bharathvn; 02-20-2009 at 06:27 PM.
 
Old 02-02-2006, 09:42 AM   #2
acidzebra
Member
 
Registered: Mar 2005
Location: Netherlands
Distribution: FC4, debian, SuSE
Posts: 64

Rep: Reputation: 15
I used to have a shitload of iptables rules but I haven't looked into it recently.

This looks promising:
http://sourceforge.net/projects/iptables-p2p

Otherwise some quick googling:
http://www.google.com/search?q=iptables+block+p2p
 
Old 02-03-2006, 07:25 AM   #3
bharathvn
Member
 
Registered: Mar 2005
Distribution: Redhat , Debian
Posts: 43

Original Poster
Rep: Reputation: 15
Hi,

Thanks for your reply

i have 2.6 kernel, what the link gave is not able to install.

Kindly guide me

Thanks
Bharathvn
http://expertsxchange.blogspot.com/

Last edited by bharathvn; 02-20-2009 at 06:27 PM.
 
Old 02-03-2006, 07:29 AM   #4
acidzebra
Member
 
Registered: Mar 2005
Location: Netherlands
Distribution: FC4, debian, SuSE
Posts: 64

Rep: Reputation: 15
I'll have a look over the weekend. What P2P programs specifically are you looking to block?
 
Old 02-03-2006, 07:39 AM   #5
bharathvn
Member
 
Registered: Mar 2005
Distribution: Redhat , Debian
Posts: 43

Original Poster
Rep: Reputation: 15
Hi,

i like to block major P2P like Torrent download and limeware

bharathvn
 
Old 02-10-2006, 06:05 AM   #6
v00d00101
Member
 
Registered: Jun 2003
Location: UK
Distribution: Devuan Beowulf
Posts: 514
Blog Entries: 1

Rep: Reputation: 37
With new torrent clients allowing the possibility of changing the port randomnly everytime the client is restarted, i'd say you're fighting a losing battle.

The whole blocking p2p subject has come up many times before, and as far as i know has never been solved.

Sure you can block every port under the sun, then you will find someone using something like udp hole punching to get around that, or maybe using end to end encryption so you dont know they are even using protocol x (utorrent is introducing this feature to bt at present).

The only way i can see that you could effectively block it all out to a certain extent, is to proxy all traffic threw squid, and block all other ports. There were some rules floating about a year back that allowed you to make it harder for people to use p2p on a network, but i have no idea as to where you can find them now.

On this topic you are going to be fighting a losing battle, and at the end of the day, can you afford to spend x hours per day working out how they got around it and how to close down the latest hole?
 
Old 02-13-2006, 02:25 AM   #7
bharathvn
Member
 
Registered: Mar 2005
Distribution: Redhat , Debian
Posts: 43

Original Poster
Rep: Reputation: 15
Hi,

what u meant is true? Currently i am handling with mutual understanding with Users.

Thanks
Bharathvn
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Can you block programs (like p2p) by protocol examining? servnov Linux - Networking 3 10-02-2005 04:33 PM
iptables how to block p2p (missing ipp2p) Neze Linux - Networking 1 02-01-2005 01:33 PM
why does shorewall block my websites and vsftp stop postfix? Michele Linux - Newbie 5 06-18-2004 12:01 AM
Can't ping/ssh my box, Shorewall seems to block all traffic except http / ftp tiduck Linux - Networking 10 05-22-2003 09:21 PM
block p2p tcby Linux - Security 1 10-28-2001 10:54 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 05:09 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration