You can't block Kazaa with firewalls using host &/or port blocking, as
neither is fixed. You need a level of layer-7 "smarts" that firewalls lack!
Have seen p2p apps using TCP ports 21 and 80, the only ports allowed out of
a 1,000+ node network!

If you are having problems with such apps, one solution is Packeteer's
PacketShaper, and it is as far as you can get from being a firewall.

Check it out at: http://www.packeteer.com/

----- Original Message -----
From: "Mikael Olsson" <[EMAIL PROTECTED]>
To: "Marcelo Souza" <[EMAIL PROTECTED]>
Cc: <[EMAIL PROTECTED]>
Sent: Friday, June 07, 2002 12:16 pm
Subject: Re: Kazaa ports



Marcelo Souza wrote:
>
> Hi all,
>
> Can you give me some good firewall politic to allow a secure use
> of Kazaa (p2p) program.
> Which are the ports and protocols it use only for file sharing?

There is no such thing as a secure use of Kazaa. Did you completely
miss out on the news of the "easter egg" in the client that allows
Brilliant Digital Entertainment to upload and start any process they
damn well please on your computer?

More at:  http://news.com.com/2100-1023-873181.html

And add to that all the directory traversal problems that pretty much
every single web and ftp server has had or still has. I'd be willing
to bet that the P2P apps have the exact same problems.

--
Mikael Olsson, Clavister AB
Storgatan 12, Box 393, SE-891 28 �RNSK�LDSVIK, Sweden
Phone: +46 (0)660 29 92 00   Mobile: +46 (0)70 26 222 05
Fax: +46 (0)660 122 50       WWW: http://www.clavister.com

"Senex semper diu dormit"
_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
For Account Management (unsubscribe, get/change password, etc) Please go to:
http://lists.gnac.net/mailman/listinfo/firewalls


_______________________________________________
Firewalls mailing list
[EMAIL PROTECTED]
For Account Management (unsubscribe, get/change password, etc) Please go to:
http://lists.gnac.net/mailman/listinfo/firewalls

Reply via email to