Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 25 Feb 2004 13:11:33 +0100
From:      Martin Jessa <freebsd@yazzy.org>
To:        freebsd-security@freebsd.org
Subject:   Re: improve ipfw rules
Message-ID:  <20040225131133.1b989778.freebsd@yazzy.org>
In-Reply-To: <FE045D4D9F7AED4CBFF1B3B813C853370397699F@mail.sandvine.com>
References:  <FE045D4D9F7AED4CBFF1B3B813C853370397699F@mail.sandvine.com>

next in thread | previous in thread | raw e-mail | index | archive | help
Hi.

Take a look at:
http://jk.yazzy.org/articles/openbsd/kazaa.html
Jochem describes there how to block Kazaa with snort on OpenBSD.
Hope this helps.


On Tue, 24 Feb 2004 10:09:24 -0500
Richy Kim <rkim@sandvine.com> wrote:

> >> 3. I'm intrested in blocking kazaa/P2P trafic with IPFW any help in this
> issue
> you could possibly block connections at known p2p ports.
> deny tcp from any to any 6699 step
> but most of the newer protocols use dynamic ports and in turn, are
> configurable. 
> so ipfw isn't exactly ideal on it's own for this.
> 
> -r.
> 
> 
> -----Original Message-----
> From: Pons [mailto:pons@gmx.li]
> Sent: Tuesday, February 24, 2004 6:33 AM
> To: freebsd-security@freebsd.org
> Subject: improve ipfw rules
> 
> 
> I have configured a FreeBSD 5.1 rel box 2 NIC's (Ext.ip/Int.ip)
> with ipfw/natd/squid the setup is working
> 
> _______________________________________________
> freebsd-security@freebsd.org mailing list
> http://lists.freebsd.org/mailman/listinfo/freebsd-security
> To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20040225131133.1b989778.freebsd>