Date: Wed, 25 Feb 2004 13:11:33 +0100 From: Martin Jessa <freebsd@yazzy.org> To: freebsd-security@freebsd.org Subject: Re: improve ipfw rules Message-ID: <20040225131133.1b989778.freebsd@yazzy.org> In-Reply-To: <FE045D4D9F7AED4CBFF1B3B813C853370397699F@mail.sandvine.com> References: <FE045D4D9F7AED4CBFF1B3B813C853370397699F@mail.sandvine.com>
next in thread | previous in thread | raw e-mail | index | archive | help
Hi. Take a look at: http://jk.yazzy.org/articles/openbsd/kazaa.html Jochem describes there how to block Kazaa with snort on OpenBSD. Hope this helps. On Tue, 24 Feb 2004 10:09:24 -0500 Richy Kim <rkim@sandvine.com> wrote: > >> 3. I'm intrested in blocking kazaa/P2P trafic with IPFW any help in this > issue > you could possibly block connections at known p2p ports. > deny tcp from any to any 6699 step > but most of the newer protocols use dynamic ports and in turn, are > configurable. > so ipfw isn't exactly ideal on it's own for this. > > -r. > > > -----Original Message----- > From: Pons [mailto:pons@gmx.li] > Sent: Tuesday, February 24, 2004 6:33 AM > To: freebsd-security@freebsd.org > Subject: improve ipfw rules > > > I have configured a FreeBSD 5.1 rel box 2 NIC's (Ext.ip/Int.ip) > with ipfw/natd/squid the setup is working > > _______________________________________________ > freebsd-security@freebsd.org mailing list > http://lists.freebsd.org/mailman/listinfo/freebsd-security > To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040225131133.1b989778.freebsd>