Re: IRC slowness and firewall

From: amputee (dirty@pakistani.com)
Date: 04/21/02


From: "amputee" <dirty@pakistani.com>
Date: Sun, 21 Apr 2002 19:24:45 GMT


"El Brujo" <me@bigfoot.com> wrote in message news:bgt5cukf6n1j58q506f9c2eoj4srtev2f5@4ax.com...
>
> I'm using Kerio and I noticed that when the firewall is active, mIRC
> takes a lot of time to connect to the irc server, but it connects
> almost instantaneously when Kerio is off. I have a simple rule to
> allow mIRC to connect to any IP at port 6667 (IRC standard) through
> TCP, so what's the problem?
>
> Anyone can help?
>
> TIA

This is probably because most IRC servers authenticate by connecting
to your host on port 113 (identd/authentication) if Kerio is running,
this port is blocked, and no ident response is returned. Also, and I'm
taking a guess here, Kerio probably silently drops SYNs, some
firewall manufacturers call this "stealth" mode or something similar.
Normally when your machine receives a SYN and the port is closed,
a RST is sent, but in this mode, nothing will be sent, so the server will
wait a default amount of time for the packet to time out.



Relevant Pages

  • IRC slowness and firewall
    ... I'm using Kerio and I noticed that when the firewall is active, mIRC ... takes a lot of time to connect to the irc server, ...
    (comp.security.firewalls)
  • Re: I think I have been hacked
    ... I think it's not a proxy but a primary name server. ... I'm not using Windoze and mIRC but I have read it before. ... someone suggested that IRC server checked proxy. ... some server check auth (port 113) and port ...
    (comp.os.linux.security)
  • Re: I think I have been hacked
    ... I think it's not a proxy but a primary name server. ... I'm not using Windoze and mIRC but I have read it before. ... someone suggested that IRC server checked proxy. ... some server check auth (port 113) and port ...
    (comp.os.linux.security)
  • Re: IRC slowness and firewall
    ... >> I'm using Kerio and I noticed that when the firewall is active, mIRC ... >> takes a lot of time to connect to the irc server, ... >> almost instantaneously when Kerio is off. ...
    (comp.security.firewalls)
  • Re: Security Newbie - DSNkong, Proxomitron, Kerio
    ... >>connect to cpanel, but still cannot FTP. ... When kerio is on I see that it is allowing ... (ANY local port, ANY remote port, action set to ... > Remote Address: ANY (or, if you FTP to the same IP or group of IPs, ...
    (comp.security.firewalls)

Quantcast