Re: advise please on what ports to block?




"Baffie" <anyone@xxxxxxxxxxxx> wrote in message
news:d8gl92hdgef47bsuc85rg412690gi90ctd@xxxxxxxxxx
Hi, and thanks for reading this, I'd appreciate a little guidance if
possible

our family have just bought a belkin wireless router that also has a
four port switch so that everyone can share the broadband connection.

trouble is, my 14 year old can't seem to stop himself from playing web
enabled games like star wars galaxies and is (in his bedroom) playing
until way too late on a night. I've tried reasoning with him and
whilst he agrees he's getting it all wrong (he's v tired at school) he
just can't seem to help himself and stays on the web way too late on a
night.

You will need a software solution, such as WinControl,
which can shut off certain programs after a certain
hour.
Maybe you need to get rid of your hardware
applicance and get a software soliution, with a
gateway machine with filtering software on it.
What you need is

another PC (to act as gateway machine)
any kind of software firewall (I like Tiny best)
a filtering program
some kind of proxy software

Athough CyBlock is expensive (at $799 per
year), it will provide the best blocking. You
could block all games under the games category,
and that will completely cut off games to his
bedroom computer, as well as any other
content you dont want him to see.

I've tried configuring the router so that it cuts him off at 10pm,
(leaving the older children online) but it just doesn't seem to do
it's job

Routers cannot do that.

can anyone advise the procedure for this? by leaving port settings
blank does it mean it blocks them all? I've tried specifically setting
port 80 to shut off but it doesn't, internet explorer works as if
nothing has changed.

If he using an open proxy server on a port other
than 80? There are plenty of them around. Check
out www.digitalcybersoft.com and
www.aliveproxy.com, you will see what I mean
This is another argument for getting a software
based solution on a gateway machine.


I realise tha the game probably uses different ports but have no idea
what they are. what's the ideal port range and procedure to shut
everything down on his pc?

Get another PC to use as a gateway machine,
install and configure the software I already
mentioned. You will need to have HTTP and
Socks servers on your machine. With Tiny,
you can deny the program using the Socks
server different ports than HTTP. Allow 80
and 443 on the HTTP proxy, while denying
port 80, and ports 1000-7000 on the Socks
server. You will also need unfiltered proxies
in case you have to access something that
is filtered. Using a second proxy with
authentication would accomplish this. You
will just have to configure all the browsers on
your networked PCs to use the proxy.


.



Relevant Pages

  • Re: Transparent proxy failing
    ... machine A as the gateway on the network, and A takes requests to port ... The squid machine, A, doesn't handle HTTPS blocking. ... up a website, it goes right to the website, no filtering. ... IE on the client to specifically use the proxy setting of B's ip ...
    (Ubuntu)
  • Re: SSH Tunneling, view web site as though I am in the USA
    ... $ ssh -D 1080 me@us_server ... And then set your local web browser to proxy using socks 4 to server ... HTTP Proxy: localhost Port: 1080 ... Not http proxy, SOCKS 4 proxy. ...
    (comp.security.ssh)
  • Re: advise please on what ports to block?
    ... four port switch so that everyone can share the broadband connection. ... gateway machine with filtering software on it. ... If he using an open proxy server on a port other ... Did you not read that the person is using wireless or did you miss that? ...
    (comp.security.firewalls)
  • Re: Fehlercode 502
    ... Wenn ich den Proxy umgehe, ... In der ISA Server Hilfe habe ich leider keine Infos gefunden, ... Gruß Detlef ... >> Port 8443). ...
    (microsoft.public.de.german.isaserver)
  • Re: Webproxy Konfiguration auf einem ISA 2006 Standard
    ... dann ist der Client noch SecureNAT Client?! ... Dann geht es auch ohne Proxy ... Hierbei habe ich die einzelne IP als Quelle angegeben und den ISA ... Freigegeben sind Port 80/443/8080. ...
    (microsoft.public.de.german.isaserver)