Re: how to block ALL AIM traffic ?
From: /boot (Slashboot_at_gmail.com)
Date: 04/28/05
- Previous message: Scott Schwendinger: "Re: Secure web site access and PKI Certs"
- In reply to: Realized Mofo: "how to block ALL AIM traffic ?"
- Next in thread: Ramon Kagan: "Re: how to block ALL AIM traffic ?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Thu, 28 Apr 2005 00:01:19 +0200 To: security-basics@securityfocus.com
Hello
Realized Mofo wrote:
> BUT AOL seems to have found a great way around this and has 4000+
> diffrent ports they use and i'd assume lots of diffrent hosts.
>
>
> Whats the best way of blocking all AIM traffic ?
You deny all outgoing connections, then you accept only outgoing
connections to the ports that you enable in your firewall config (http,
ftp, ssh ?). But, I think that people can continue using AIMs with http
only (there are some web sites giving this kind of service for free like
http://www.e-messenger.net/). A host based firewall rule should handle
that! Remember also that if you are opening ssh access, people can use
ssh tunneling and bypass firewall rules.
-- /boot
- Previous message: Scott Schwendinger: "Re: Secure web site access and PKI Certs"
- In reply to: Realized Mofo: "how to block ALL AIM traffic ?"
- Next in thread: Ramon Kagan: "Re: how to block ALL AIM traffic ?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]