Filtering out P2P traffic



Hello!

In an educational institution I use Solaris 10 on the gateway between internet and internal network. I would like to filter out P2P traffic. But since the P2P clients can use any port which is open for traffic, I would need to do content-based filtering.

Is possible to block P2P traffic with the IPFilter included in Solaris 10? I see in the IPFilter FAQ (http://www.phildev.net/ipf/ IPFques.html#ques36), that you can do "simple matching of content for TCP session startup" on the first 16 bytes. But that means I need to find out what to match for all P2P protocols. Also, I could not find on docs.sun.com if this kind of rules are supported in IPFilter integrated in Solaris 10.

I do not want to block anything else except P2P. There are many protocols which I would like to go though like SSH, VNC, RDC etc.

What options are there to build such filter on Solaris? Is there any other free/cheap option to do it? If not, is it possible to slow down P2P traffic via IPQoS?


Regards,
Damjan



Relevant Pages

  • Re: Filtering out P2P traffic
    ... Use the Application Layer Packet Classifier for Linux ... Is possible to block P2P traffic with the IPFilter included in Solaris ... What options are there to build such filter on Solaris? ...
    (Focus-SUN)
  • Re: Thinking about upgrading to Solaris 10
    ... >>I'm sure the trivial input filter would have solved the problem if I ... HP laser printers are everywhere. ... >> Installing and configuring printers is one of the areas where Windoze ... >printers going with Solaris has been me setting things up wrong. ...
    (comp.unix.solaris)
  • Re: Printing from Solaris
    ... It works great on the Sparc platform but it uses a Sparc ... >>which filter it needs or even where to find the available filters. ... and found it won't work on your Solaris x86 machine. ...
    (comp.unix.solaris)
  • Re: Printing from Solaris
    ... >which filter it needs or even where to find the available filters. ... and found it won't work on your Solaris x86 machine. ... Jetdirect card, not to Solaris, so you won't find them in any Solaris ...
    (comp.unix.solaris)
  • Summary: Solaris 10 and IP Filter
    ... "Mike Demarco" ... decided to install Solaris 10 from scratch and voila. ... Now "svcs -l ipfilter" ives me want I wanted to see and the filter is ...
    (SunManagers)