• Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login
Netgate Discussion Forum
  • Categories
  • Recent
  • Tags
  • Popular
  • Users
  • Search
  • Register
  • Login

How to block torrents

General pfSense Questions
6
18
3.1k
Loading More Posts
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • O
    OpenWifi
    last edited by May 9, 2019, 2:56 AM

    Hello guys.I would like to block all torrents on my network.How can i achieve that? Because i really am desperate

    1 Reply Last reply Reply Quote 0
    • C
      chrismacmahon
      last edited by May 9, 2019, 11:01 AM

      You are looking for Application blocking with Snort and OpenAppID: https://www.netgate.com/blog/application-detection-on-pfsense-software.html

      Need help fast? Our support is available 24/7 https://www.netgate.com/support/

      Do Not PM For Help!

      O 1 Reply Last reply May 9, 2019, 11:40 PM Reply Quote 0
      • O
        OpenWifi @chrismacmahon
        last edited by May 9, 2019, 11:40 PM

        @chrismacmahon Thank you, but the OpenAppID also contain Bittorrent Application? Because i only see facebook, twitter, Netflix and Amazon

        1 Reply Last reply Reply Quote 0
        • C
          chrismacmahon
          last edited by May 10, 2019, 12:43 AM

          it's located in openappid-p2p_file_sharing.rules

          Need help fast? Our support is available 24/7 https://www.netgate.com/support/

          Do Not PM For Help!

          O 1 Reply Last reply May 10, 2019, 4:16 AM Reply Quote 0
          • O
            OpenWifi @chrismacmahon
            last edited by May 10, 2019, 4:16 AM

            @chrismacmahon Thank you

            1 Reply Last reply Reply Quote 0
            • O
              OpenWifi
              last edited by May 14, 2019, 2:34 AM

              @chrismacmahon So i enabled that category(openappid-p2p_file_sharing.rules) but i can't seem to get any alerts. I am downloading a torrent(ubuntu)

              1 Reply Last reply Reply Quote 0
              • O
                OpenWifi
                last edited by May 14, 2019, 5:23 AM

                No need.Logging has began..But realy appreciate your help. Thanks

                1 Reply Last reply Reply Quote 0
                • B
                  BAOZHAI
                  last edited by Jun 18, 2019, 12:17 PM

                  This post is deleted!
                  1 Reply Last reply Reply Quote 0
                  • V
                    Vincent_28
                    last edited by Jul 12, 2019, 1:43 PM

                    i tried to block torrents by blocking the ports. until now its okay and blocking the downloading of torrent.

                    1 Reply Last reply Reply Quote 0
                    • V
                      Vincent_28
                      last edited by Jul 12, 2019, 1:56 PM

                      theres a two way. you can block all ports then set a port that you want to allow like 80,53 or block the ports of torrents.

                      O 1 Reply Last reply Jul 12, 2019, 3:22 PM Reply Quote 0
                      • O
                        OpenWifi @Vincent_28
                        last edited by Jul 12, 2019, 3:22 PM

                        @Vincent_28 which are the torrent ports ?

                        1 Reply Last reply Reply Quote 0
                        • J
                          johnpoz LAYER 8 Global Moderator
                          last edited by Jul 12, 2019, 3:31 PM

                          @OpenWifi said in How to block torrents:

                          which are the torrent ports ?

                          They could run on any port.. They can run over 80 and 53 even ;)

                          An intelligent man is sometimes forced to be drunk to spend time with his fools
                          If you get confused: Listen to the Music Play
                          Please don't Chat/PM me for help, unless mod related
                          SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                          V 1 Reply Last reply Jul 12, 2019, 3:39 PM Reply Quote 0
                          • V
                            Vincent_28 @johnpoz
                            last edited by Jul 12, 2019, 3:39 PM

                            @johnpoz in my blocking in port there's no 80 & 53 but i block the downloading of torrent

                            1 Reply Last reply Reply Quote 0
                            • J
                              johnpoz LAYER 8 Global Moderator
                              last edited by johnpoz Jul 12, 2019, 3:41 PM Jul 12, 2019, 3:40 PM

                              Just answering the question to what ports torrents run on - they can be run on any port.. You need to block them via packet inspection via stuff like appid with an IPS... Just trying to block ports is not going to be valid solution.

                              An intelligent man is sometimes forced to be drunk to spend time with his fools
                              If you get confused: Listen to the Music Play
                              Please don't Chat/PM me for help, unless mod related
                              SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                              1 Reply Last reply Reply Quote 0
                              • K
                                KOM
                                last edited by Jul 12, 2019, 3:42 PM

                                The port that you torrent client uses is set in the client itself. There is no universal bittorrent port. Trying to block torrents by blocking ports is useless unless the person you're trying to block knows nothing about networking.

                                1 Reply Last reply Reply Quote 0
                                • V
                                  Vincent_28
                                  last edited by Vincent_28 Jul 12, 2019, 3:46 PM Jul 12, 2019, 3:45 PM

                                  i use wireshark. to see the port of torrents and syn & seeds of bitorrent

                                  O 1 Reply Last reply Jul 12, 2019, 3:47 PM Reply Quote 0
                                  • O
                                    OpenWifi @Vincent_28
                                    last edited by Jul 12, 2019, 3:47 PM

                                    @Vincent_28 Is wireshark a package ?

                                    1 Reply Last reply Reply Quote 0
                                    • J
                                      johnpoz LAYER 8 Global Moderator
                                      last edited by Jul 12, 2019, 3:50 PM

                                      @Vincent_28 said in How to block torrents:

                                      use wireshark. to see the port of torrents and syn. seeds of bitorrent

                                      That is a wack a mole game that will keep you busy to the end of time.. And as already stated - it can be ran over ports that you require to be open. 80/443..

                                      The most effective method is application detection via your IPS - which again as the tech evolves signatures can change depending on the p2p product being used.. Which your IPS might not detect, analysis of traffic flow patterns can help in detection as well, etc..

                                      But blocking of ports is not going to stop someone that knows what they are doing and how the protocol can be used.

                                      Good way to stop it is only allow your proxy outbound.. where clients have NO direct outbound connection capability... And block lists on your proxy to prevent connection to p2p networks even over the proxy, etc.

                                      Trying to control user access once you have given them even 1 port outbound is going to be a never ending battle ;)

                                      An intelligent man is sometimes forced to be drunk to spend time with his fools
                                      If you get confused: Listen to the Music Play
                                      Please don't Chat/PM me for help, unless mod related
                                      SG-4860 24.11 | Lab VMs 2.7.2, 24.11

                                      1 Reply Last reply Reply Quote 0
                                      • First post
                                        Last post
                                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.