You can't block Kazaa with firewalls using host &/or port blocking, as neither is fixed. You need a level of layer-7 "smarts" that firewalls lack! Have seen p2p apps using TCP ports 21 and 80, the only ports allowed out of a 1,000+ node network!
If you are having problems with such apps, one solution is Packeteer's PacketShaper, and it is as far as you can get from being a firewall. Check it out at: http://www.packeteer.com/ ----- Original Message ----- From: "Mikael Olsson" <[EMAIL PROTECTED]> To: "Marcelo Souza" <[EMAIL PROTECTED]> Cc: <[EMAIL PROTECTED]> Sent: Friday, June 07, 2002 12:16 pm Subject: Re: Kazaa ports Marcelo Souza wrote: > > Hi all, > > Can you give me some good firewall politic to allow a secure use > of Kazaa (p2p) program. > Which are the ports and protocols it use only for file sharing? There is no such thing as a secure use of Kazaa. Did you completely miss out on the news of the "easter egg" in the client that allows Brilliant Digital Entertainment to upload and start any process they damn well please on your computer? More at: http://news.com.com/2100-1023-873181.html And add to that all the directory traversal problems that pretty much every single web and ftp server has had or still has. I'd be willing to bet that the P2P apps have the exact same problems. -- Mikael Olsson, Clavister AB Storgatan 12, Box 393, SE-891 28 �RNSK�LDSVIK, Sweden Phone: +46 (0)660 29 92 00 Mobile: +46 (0)70 26 222 05 Fax: +46 (0)660 122 50 WWW: http://www.clavister.com "Senex semper diu dormit" _______________________________________________ Firewalls mailing list [EMAIL PROTECTED] For Account Management (unsubscribe, get/change password, etc) Please go to: http://lists.gnac.net/mailman/listinfo/firewalls _______________________________________________ Firewalls mailing list [EMAIL PROTECTED] For Account Management (unsubscribe, get/change password, etc) Please go to: http://lists.gnac.net/mailman/listinfo/firewalls
