Re: [squid-users] how to blocking P2P

From: Leonardo Rodrigues Magalhães <leolistas_at_solutti.com.br>
Date: Mon, 22 Dec 2008 08:24:21 -0200

usually P2P does not uses squid. Anyway, several P2P protocols can be
encapsulated in HTTP requests, thus allowing them to use squid and
successfully work through HTTP proxy.

Those HTTP-encapsulated P2P requests usually can be identified by:

1) CONNECT method
2) uses IP addresses instead of names
3) almost no real CONNECT requests (https ones) uses IP addresses, they
uses almost all names

with 1 and 2, you can create ACLs and limit/block it. Search the
archives, this has been discuted several times before.

And watch out your NAT rules. If they are allowing anything, so P2P will
probably works without squid, thus you cannot control/block it on squid.

░▒▓ ɹɐzǝupɐɥʞ ɐzɹıɯ ▓▒░ escreveu:
> anyone know how to block /limit P2P connection
>

-- 
	Atenciosamente / Sincerily,
	Leonardo Rodrigues
	Solutti Tecnologia
	http://www.solutti.com.br
	Minha armadilha de SPAM, NÃO mandem email
	gertrudes_at_solutti.com.br
	My SPAMTRAP, do not email it
Received on Mon Dec 22 2008 - 10:24:42 MST

This archive was generated by hypermail 2.2.0 : Mon Dec 22 2008 - 12:00:02 MST