LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-26-2004, 02:01 PM   #1
dsheller
Member
 
Registered: Jan 2003
Posts: 56

Rep: Reputation: 15
Deny Area/Limewire/Kazaa use


I guess I should explain my situation here:

I have a box running RedHat 6.1, this machine sees all the traffic before passing it on to the wireless router.

My question is this, is it possible to make it so none of the above programs will function on any of the networked computers, and if so how... I have some idea but I don't want to mess around in there when I don't know what I am doing.
 
Old 12-26-2004, 08:54 PM   #2
SSTwinrova
Member
 
Registered: Aug 2002
Location: Dallas
Distribution: Ubuntu 5.04 (Hoary)
Posts: 51

Rep: Reputation: 15
Someone might very well come along and have a better solution, but I would think you could use iptables to stop all network traffic on the default ports that each of those three networks run on. You can't actually prevent the programs from being run on each individual computer, but that should essentially make them useless unless they are set to operate on a different port than the normal one. I can't provide specifics on how to configure iptables since I've never used it, but I'm sure either someone else here could tell you or there is a guide that would give you the general statements to use.
 
Old 12-27-2004, 12:17 AM   #3
brettcave
LQ Newbie
 
Registered: Aug 2004
Location: Johannesburg, South Africa
Distribution: Mandrake, RH, Fedora
Posts: 22

Rep: Reputation: 15
Your Redhat box sees all traffic - does your rh box have 1 network card that is plugged into a hub (not switch), or does it have 2 network cards, with the wireless router on 1 side and the network on the other?

It will be difficult to control traffic if you have the first scenario, but if you have the 2nd, you could use SSTwinrova's suggestion and use iptables.

kazaa uses port 1214, so you could use a FORWARD DENY rule for tcp port 1214. (or block all forwarding by default and only allow forwarding of what you need).

Another alternative is to disable forwarding and to configure a proxy server (such as squid), and then use the access control features of squid to restrict what the local network can and cant do.

Last edited by brettcave; 12-27-2004 at 12:18 AM.
 
Old 12-27-2004, 12:34 AM   #4
dsheller
Member
 
Registered: Jan 2003
Posts: 56

Original Poster
Rep: Reputation: 15
It is the second scenario you described, and I am going to give the iptables stuff a shot!
 
Old 12-27-2004, 12:56 AM   #5
brettcave
LQ Newbie
 
Registered: Aug 2004
Location: Johannesburg, South Africa
Distribution: Mandrake, RH, Fedora
Posts: 22

Rep: Reputation: 15
great
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
never_direct deny all vs. always_direct deny all simplyrahul Linux - General 1 02-16-2005 02:42 PM
Does Limewire search the same network kazaa does? Braveheart1980 Linux - Software 1 08-10-2004 06:33 PM
Work area... bkeating General 19 11-10-2003 07:48 PM
Knoppix Area dmedici LQ Suggestions & Feedback 4 10-16-2003 07:58 AM
area of polygon questioner Programming 7 09-19-2003 11:24 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 06:46 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration