[isalist] Re: For Blocking MSN Messenger File Transfers, TOM Said;

  • From: "Thomas W Shinder" <tshinder@xxxxxxxxxxx>
  • To: <isalist@xxxxxxxxxxxxx>
  • Date: Wed, 22 Mar 2006 09:59:32 -0600

Header  Content-Type: 
 
Signature  application/x-msnmsgrp2p
 
Request header.
and
Response header
 
Thomas W Shinder, M.D.
Site: www.isaserver.org <http://www.isaserver.org/> 
Blog: http://blogs.isaserver.org/shinder/
Book: http://tinyurl.com/3xqb7 <http://tinyurl.com/3xqb7> 
MVP -- ISA Firewalls

 


________________________________

        From: isalist-bounce@xxxxxxxxxxxxx
[mailto:isalist-bounce@xxxxxxxxxxxxx] On Behalf Of Faraz Hassan Khan
        Sent: Wednesday, March 22, 2006 9:41 AM
        To: isalist@xxxxxxxxxxxxx
        Subject: [isalist] Re: For Blocking MSN Messenger File
Transfers, TOM Said;
        
        
        Well may be(I Think NOT)... But when you defined those
signatures, what was your search criteria while adding new signature?
         
        Search in : ?
        HTTP header : ?
        Signature : ?


        Thomas W Shinder <tshinder@xxxxxxxxxxx> wrote:

                Maybe things have changed. Do a packet trace to see what
headers are being used now.
                 
                
                Thomas W Shinder, M.D.
                Site: www.isaserver.org <http://www.isaserver.org/> 
                Blog: http://blogs.isaserver.org/shinder/
                Book: http://tinyurl.com/3xqb7
<http://tinyurl.com/3xqb7> 
                MVP -- ISA Firewalls
                 


________________________________

                        From: isalist-bounce@xxxxxxxxxxxxx
[mailto:isalist-bounce@xxxxxxxxxxxxx] On Behalf Of Faraz Hassan Khan
                        Sent: Wednesday, March 22, 2006 9:27 AM
                        To: isalist@xxxxxxxxxxxxx
                        Subject: [isalist] For Blocking MSN Messenger
File Transfers, TOM Said;
                        
                        
                        Hi EveryOne
                        For Blocking MSN Messenger File Transfers, TOM
Said;
                        All you need to do is configure the HTTP
Security Filter with a signature to block the following Host Header:
                        /x-msnmsgrp2p
                         
                        Now i have Access Rule(Allows Internal to
external Only HTTP & HTTPS), while adding a new signature, what should
be the signature search criteria?
                        1.
                        Search in : Request headers 
                        HTTP header : /x-msnmsgrp2p
                        Signature : MSN Messenger
                         
                        2.Search in : Request URL 
                        Signature :  /x-msnmsgrp2p
                         
                        3.
                        Search in : Request headers 
                        HTTP header : /x-msnmsgrp2p
                        Signature : /x-msnmsgrp2p
                         
                        I have checked all these combinations of
signature search criterias, but NOT WORKING!
________________________________

                        Yahoo! Travel
                        Find great deals
<http://us.lrd.yahoo.com/_ylc=X3oDMTFscDlocTFiBF9TAzMyOTc1MDIEX3MDMjcxOT
Q4MQRwb3MDMgRzZWMDbWFpbC1mb290ZXIEc2xrA3l0LXR0/SIG=12hqieud9/**http%3a//
leisure.travelocity.com/Promotions/0,,YHOE%7c1381%7cvacs_main,00.html>
to the top 10 hottest destinations!


        
________________________________

        Yahoo! Mail
        Use Photomail
<http://us.rd.yahoo.com/mail_us/taglines/pmall2/*http://photomail.mail.y
ahoo.com>  to share photos without annoying attachments.

Other related posts: