Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    MSN can recieve files even though everything is blocked?

    Scheduled Pinned Locked Moved General pfSense Questions
    18 Posts 6 Posters 7.5k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • Y
      yoda715
      last edited by

      It works with both

      1 Reply Last reply Reply Quote 0
      • J
        Johnny_B
        last edited by

        @sdale:

        It works with both

        I've read it works with Linux with TCP, but I didn't thought *BSD suffered from this. Is it possible to do this in pf?

        What is this "modulate state"? I don't get the description fra the man page to good.

        1 Reply Last reply Reply Quote 0
        • J
          Johnny_B
          last edited by

          I've enabled NAT Outbound and setup rules for the ones I want to enable. But I can't see how this would do any difference? I must enable port 80 because I need the www to work.

          Anyone?

          1 Reply Last reply Reply Quote 0
          • S
            sai
            last edited by

            http://doc.pfsense.org/index.php/How_Do_I_block_Instant_Messengers might help

            1 Reply Last reply Reply Quote 0
            • J
              Johnny_B
              last edited by

              @sai:

              http://doc.pfsense.org/index.php/How_Do_I_block_Instant_Messengers might help

              I'm not interessed in blocking MSN. Only the file transfer side of it.

              1 Reply Last reply Reply Quote 0
              • H
                hoba
                last edited by

                Not sure if the imspector package can do this but it's not yet ready anyway afaik. Check it out once it is done.

                1 Reply Last reply Reply Quote 0
                • Y
                  yoda715
                  last edited by

                  You can also install Snort to detect and block file transfers for MSN messenger.

                  1 Reply Last reply Reply Quote 0
                  • J
                    Johnny_B
                    last edited by

                    @sdale:

                    You can also install Snort to detect and block file transfers for MSN messenger.

                    Installed Snort and got it working. But I couldn't see rules for MSN filetransfers… In what category is it hiding?

                    1 Reply Last reply Reply Quote 0
                    • Y
                      yoda715
                      last edited by

                      Its under the chat.rules

                      1 Reply Last reply Reply Quote 0
                      • J
                        Johnny_B
                        last edited by

                        @sdale:

                        Its under the chat.rules

                        I saw that one, but that is outbound and not on port 80 :/ I'll take TCPView:

                        http://www.microsoft.com/technet/sysinternals/utilities/TcpView.mspx

                        To one of the students computer and look myself. Since I don't have neither Windows nor MSN :P

                        1 Reply Last reply Reply Quote 0
                        • Y
                          yoda715
                          last edited by

                          You can edit the snort rule to detect file transfers on any port. The only problem with using snort to block file transfers is if someone initiates a file transfer, snort will block that IP from having ANY contact to your network. So basically it will cut off the file transfer and any further IM traffic to that IP for an hour.

                          1 Reply Last reply Reply Quote 0
                          • First post
                            Last post
                          Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.