Re: JedLUG-general Digest, Vol 22, Issue 5

"saad khan" <[email protected]> Mon, 12 Mar 2007 07:28:17 +0000
Newsgroups gmane.org.user-groups.linux.jedlug
Message-ID <[email protected]>
--===============1784240287==
Content-Type: multipart/alternative; 
	boundary="----=_Part_34261_22509322.1173684497489"

------=_Part_34261_22509322.1173684497489
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

setup transparent proxy server with squid to block zip,exe,video files.

check out following link to setup transparent proxy server
http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch32_:_Controlling_Web_Access_with_Squid

to block files with squid
http://www.cyberciti.biz/faq/squid-content-filter-block-files/

and use iptables to block msn servers.







On 3/12/07, Ahmad alsane <[email protected]> wrote:
>
> ok done. i was making a stupid mistake as always. am trying to block MSN
> messenger and .exe,  .zip, vedio files and audio files downloads.
> any idea ? note: i configured in-office proxy (thats why i was unable to
> block any thing i was behind ISP proxy)
>
> On 3/10/07, [email protected] <[email protected]>
> wrote:
> >
> > Send JedLUG-general mailing list submissions to
> >         [email protected]
> >
> > To subscribe or unsubscribe via the World Wide Web, visit
> >         http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org
> > or, via email, send a message with subject or body 'help' to
> >         [email protected]
> >
> > You can reach the person managing the list at
> >         [email protected]
> >
> > When replying, please edit your Subject line so it is more specific
> > than "Re: Contents of JedLUG-general digest..."
> >
> >
> > Today's Topics:
> >
> >    1. Firewall and routing (Ahmad alsane)
> >    2. Re: Firewall and routing (saad khan)
> >
> >
> > ----------------------------------------------------------------------
> >
> > Message: 1
> > Date: Sat, 10 Mar 2007 12:17:07 +0300
> > From: "Ahmad alsane" <[email protected]>
> > Subject: [Jedlug-general] Firewall and routing
> > To: [email protected]
> > Message-ID:
> >         <[email protected] >
> > Content-Type: text/plain; charset="iso-8859-1"
> >
> > hi all,
> > i have a LAN (192.168.1.0/255.255.255.0) and DSL modem (speed touch
> > 585i).
> > am trying to install Linux firewall with iptables.
> >
> > LAN ( 192.168.1.0)  --> FW ( 192.168.1.3) --> DSL modem (192.168.1.254)
> > --->
> > WAN
> >
> > i setl box gateway on LAN to 192.168.1.3 and the FW gateway to
> > 192.168.1.254and i can get into WAN from that box.
> > but what ever iptables rule i set, nothing blocked.
> >
> > please point me if i had somthing wrong with my scheme
> >
> > --
> > REGARDS.
> > Ahmad S. Alsane
> > OAK CPA
> > KSA - Jeddah
> > +966 55 701 3494
> > -------------- next part --------------
> > An HTML attachment was scrubbed...
> > URL:
> > /pipermail/jedlug-general_kerneled.org/attachments/20070310/4b1a069f/attachment-
> > 0001.html
> >
> > ------------------------------
> >
> > Message: 2
> > Date: Sat, 10 Mar 2007 10:42:06 +0000
> > From: "saad khan" <[email protected]>
> > Subject: Re: [Jedlug-general] Firewall and routing
> > To: "JedLUG's general mailing list" <[email protected]>
> > Message-ID:
> >         < [email protected]>
> > Content-Type: text/plain; charset="iso-8859-1"
> >
> > what do you want to block?
> > can you send us iptables rules? (or script if you are using or writtten)
> >
> >
> >
> > On 3/10/07, Ahmad alsane <[email protected]> wrote:
> > >
> > > hi all,
> > > i have a LAN (192.168.1.0/255.255.255.0 ) and DSL modem (speed touch
> > 585i).
> > > am trying to install Linux firewall with iptables.
> > >
> > > LAN ( 192.168.1.0)  --> FW ( 192.168.1.3 ) --> DSL modem (
> > 192.168.1.254)
> > > ---> WAN
> > >
> > > i setl box gateway on LAN to 192.168.1.3 and the FW gateway to
> > > 192.168.1.254 and i can get into WAN from that box.
> > > but what ever iptables rule i set, nothing blocked.
> > >
> > > please point me if i had somthing wrong with my scheme
> > >
> > > --
> > > REGARDS.
> > > Ahmad S. Alsane
> > > OAK CPA
> > > KSA - Jeddah
> > > +966 55 701 3494
> > > _______________________________________________
> > > JedLUG-general mailing list
> > > [email protected]
> > > http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org
> > >
> > >
> > -------------- next part --------------
> > An HTML attachment was scrubbed...
> > URL:
> > /pipermail/jedlug-general_kerneled.org/attachments/20070310/55da26aa/attachment-
> > 0001.html
> >
> > ------------------------------
> >
> > _______________________________________________
> > JedLUG-general mailing list
> > [email protected]
> > http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org
> >
> >
> > End of JedLUG-general Digest, Vol 22, Issue 5
> > *********************************************
> >
>
>
>
> --
> REGARDS.
> Ahmad S. Alsane
> OAK CPA
> KSA - Jeddah
> +966 55 701 3494
>
> _______________________________________________
> JedLUG-general mailing list
> [email protected]
> http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org
>
>

------=_Part_34261_22509322.1173684497489
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

setup transparent proxy server with squid to block zip,exe,video files.<br><br>check out following link to setup transparent proxy server<br><a href="http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch32_:_Controlling_Web_Access_with_Squid">
http://www.linuxhomenetworking.com/wiki/index.php/Quick_HOWTO_:_Ch32_:_Controlling_Web_Access_with_Squid</a><br><br>to block files with squid<br><a href="http://www.cyberciti.biz/faq/squid-content-filter-block-files/">http://www.cyberciti.biz/faq/squid-content-filter-block-files/
</a><br><br>and use iptables to block msn servers.<br><br><br><br><br><br><br><br><div><span class="gmail_quote">On 3/12/07, <b class="gmail_sendername">Ahmad alsane</b> &lt;<a href="mailto:[email protected]">[email protected]
</a>&gt; wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">ok done. i was making a stupid mistake as always. am trying to block MSN messenger and .exe,&nbsp; .zip, vedio files and audio files downloads.
<br>any idea ? note: i configured in-office proxy (thats why i was unable to block any thing i was behind ISP proxy)
<div><span class="q" id="q_11144f0572830c11_1"><br><br><div><span class="gmail_quote">On 3/10/07, <b class="gmail_sendername"><a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
[email protected]</a></b> &lt;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
[email protected]</a>&gt; wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">Send JedLUG-general mailing list submissions to
<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a><br><br>To subscribe or unsubscribe via the World Wide Web, visit
<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org</a><br>or, via email, send a message with subject or body &#39;help&#39; to<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
[email protected]
</a><br><br>You can reach the person managing the list at<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]
</a><br><br>When replying, please edit your Subject line so it is more specific
<br>than &quot;Re: Contents of JedLUG-general digest...&quot;<br><br><br>Today&#39;s Topics:<br><br>&nbsp;&nbsp; 1. Firewall and routing (Ahmad alsane)<br>&nbsp;&nbsp; 2. Re: Firewall and routing (saad khan)<br><br><br>----------------------------------------------------------------------
<br><br>Message: 1<br>Date: Sat, 10 Mar 2007 12:17:07 +0300<br>From: &quot;Ahmad alsane&quot; &lt;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]
</a>&gt;<br>Subject: [Jedlug-general] Firewall and routing<br>
To: <a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a><br>Message-ID:<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&lt;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
[email protected]
</a>&gt;<br>Content-Type: text/plain; charset=&quot;iso-8859-1&quot;<br><br>hi all,<br>i have a LAN (<a href="http://192.168.1.0/255.255.255.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.0/255.255.255.0
</a>) and DSL modem (speed touch 585i).<br>am trying to install Linux firewall with iptables.
<br><br>LAN ( <a href="http://192.168.1.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.0</a>)&nbsp;&nbsp;--&gt; FW ( <a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
192.168.1.3</a>) --&gt; DSL modem (<a href="http://192.168.1.254" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.254</a>) ---&gt;<br>WAN<br><br>i setl box gateway on LAN to 
<a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.3</a> and the FW gateway to<br>192.168.1.254and i can get into WAN from that box.<br>but what ever iptables rule i set, nothing blocked.
<br><br>please point me if i had somthing wrong with my scheme
<br><br>--<br>REGARDS.<br>Ahmad S. Alsane<br>OAK CPA<br>KSA - Jeddah<br>+966 55 701 3494<br>-------------- next part --------------<br>An HTML attachment was scrubbed...<br>URL: /pipermail/jedlug-general_kerneled.org/attachments/20070310/4b1a069f/attachment-
0001.html<br><br>------------------------------<br><br>Message: 2<br>Date: Sat, 10 Mar 2007 10:42:06 +0000<br>From: &quot;saad khan&quot; &lt;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
[email protected]</a>&gt;<br>
Subject: Re: [Jedlug-general] Firewall and routing<br>To: &quot;JedLUG&#39;s general mailing list&quot; &lt;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
[email protected]</a>&gt;<br>Message-ID:<br>&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&lt;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
[email protected]</a>&gt;<br>Content-Type: text/plain; charset=&quot;iso-8859-1&quot;<br><br>what do you want to block?<br>can you send us iptables rules? (or script if you are using or writtten)
<br><br><br>On 3/10/07, Ahmad alsane &lt;<a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a>&gt; wrote:<br>&gt;<br>&gt; hi all,<br>&gt; i have a LAN (
<a href="http://192.168.1.0/255.255.255.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.0/255.255.255.0
</a>) and DSL modem (speed touch 585i).<br>&gt; am trying to install Linux firewall with iptables.<br>&gt;<br>&gt; LAN ( <a href="http://192.168.1.0" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
192.168.1.0</a>)&nbsp;&nbsp;--&gt; FW ( <a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.3</a>
) --&gt; DSL modem ( <a href="http://192.168.1.254" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">192.168.1.254</a>)<br>&gt; ---&gt; WAN<br>&gt;<br>&gt; i setl box gateway on LAN to <a href="http://192.168.1.3" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
192.168.1.3</a> and the FW gateway to<br>&gt; <a href="http://192.168.1.254" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
192.168.1.254</a> and i can get into WAN from that box.<br>&gt; but what ever iptables rule i set, nothing blocked.<br>&gt;<br>&gt; please point me if i had somthing wrong with my scheme<br>&gt;<br>&gt; --<br>&gt; REGARDS.
<br>&gt; Ahmad S. Alsane<br>&gt; OAK CPA<br>&gt; KSA - Jeddah<br>&gt; +966 55 701 3494<br>&gt; _______________________________________________<br>&gt; JedLUG-general mailing list<br>&gt; <a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">

[email protected]</a><br>&gt; <a href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org
</a><br>&gt;<br>&gt;<br>-------------- next part --------------
<br>An HTML attachment was scrubbed...<br>URL: /pipermail/jedlug-general_kerneled.org/attachments/20070310/55da26aa/attachment-0001.html<br><br>------------------------------<br><br>_______________________________________________
<br>JedLUG-general mailing list<br><a href="mailto:[email protected]" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">[email protected]</a><br><a href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank" onclick="return top.js.OpenExtLink(window,event,this)">
http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org
</a><br><br><br>End of JedLUG-general Digest, Vol 22, Issue 5<br>*********************************************<br></blockquote></div><br><br clear="all"><br>-- <br>REGARDS.<br>Ahmad S. Alsane<br>OAK CPA<br>KSA - Jeddah<br>

+966 55 701 3494
</span></div><br>_______________________________________________<br>JedLUG-general mailing list<br><a onclick="return top.js.OpenExtLink(window,event,this)" href="mailto:[email protected]">[email protected]
</a><br><a onclick="return top.js.OpenExtLink(window,event,this)" href="http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org" target="_blank">http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org</a>
<br><br></blockquote></div><br>

------=_Part_34261_22509322.1173684497489--


--===============1784240287==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

_______________________________________________
JedLUG-general mailing list
[email protected]
http://kerneled.org/mailman/listinfo/jedlug-general_kerneled.org

--===============1784240287==--