Re: Per application TCP/IP traffic filtering in Linux (sort of personal firewall)

From: aborka (aborka@hotmail.com)
Date: 04/27/02


From: aborka@hotmail.com (aborka)
Date: 27 Apr 2002 10:51:03 -0700

John Thompson <john@starfleet.attglobal.net> wrote in message news:<slrnacl5p3.mnn.john@starfleet.attglobal.net>...
> In article <7918f6f1.0204261836.7f0e4b62@posting.google.com>, aborka wrote:
>
> > OK, here is the scenario. I have a LINUX developer machine at home
> > directly connected to the Internet.
> > Used one user login only (other than root). Running a software
> > firewall. That's it.
> > 1. I have a browser to surf the Internet on port 80 for example. Let's
> > make it Mozilla.
> > 2. I have a graphical email client to check my emails. Evolution for
> > example.
> >
> > How can I configure Linux to enable port 80 for incoming/outgoing
> > traffic for my browser but disable it for the email client?
> > Unfortunately, I was not able to figure it out, nor found any firewall
> > program, which can do it (using Firestarter for a start).
>
> Unless I'm misunderstanding something, you shouldn't have to enable port
> 80 at all unless you're running a web server (not a client like Mozilla).
> The client will open a non-privileged port to connect to port 80 *on the
> remote machine*, not yours. The same goes for email clients; they open a
> non-privileged port on your machine and connect to a privileged port on
> the remote machine.

Maybe I used the wrong terms. But the task is still the same.
So, let's say for example I do not want to enable Evolution to connect
to any remote machine on port 80, but I want Mozilla to be able to do
it.
Or, when I see that an HTML email came from my boss, I want to enable
Evolution in that one case.

Another example:
I do not want Mozilla to be able to do any ftp, even if I click on a
ftp link on a page. I want only gFtp to be able to do ftp. But not
ABCDftp or anything else.

I know these are not the perfect examples but basically this is the
functionality what I need.



Relevant Pages

  • yenta irq disabled on IBM X20 with dock
    ... The disable the IRQ and also kill a USB port. ... 00:04.0 PCI bridge: Texas Instruments PCI2032 PCI Docking Bridge ... usbcore: registered new driver hub ... hub 1-1:1.0: Cannot enable port 1. ...
    (Linux-Kernel)
  • Re: ISP blocking smtp port and a way how to solve the issue
    ... directly connected email client failed to send email thru port 25. ... >>arrived at port 25 regardless whehter the firewall at the mail server is ... They may not be blocking outbound connections for what it's worth. ...
    (comp.unix.bsd.freebsd.misc)
  • Re: Download.com being blocked
    ... on where they go and what they do on the Internet. ... I don't do preview in my email client ... Windows firewall has no open ports (ie. file sharing disabled, ... The only port I leave open is 22, ...
    (alt.sys.pc-clone.dell)
  • Re: Automatic email relay agent?
    ... den 01.12.2005 schrieb Hongwei Li um 23:07: ... > you must configure your email client to use Port 587 instead. ... > reserved port for email message submission) available for authenticated SMTP. ... > The Symantec Antivirus checks port 25 for outgoing emails. ...
    (Fedora)
  • Re: HTML Form Protocol Attack
    ... Subject: HTML Form Protocol Attack ... > I tried this out on mozilla, lynx and netscape and got the ... > "Access to the port number given has been disabled for security reasons." ... Not stuck - unless you send a carefully crafted form faking a ftp ...
    (Bugtraq)