<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA bit torrent blocking in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-bit-torrent-blocking/m-p/1845821#M460291</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;bitorrent and many others P2P programs are quite smart about not getting blocked using many mechanisms: &lt;/P&gt;&lt;P&gt;- random source and destination ports&lt;/P&gt;&lt;P&gt;- payload encryption &lt;/P&gt;&lt;P&gt;- tunneling/piggybacking on top of HTTP.&lt;/P&gt;&lt;P&gt;- UPNP usage. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's almost impossible to completly block all P2P activity save for deep packet inspection and looking for patterns. &lt;/P&gt;&lt;P&gt;There are almost no reasoanly effective STATIC mechanisms to block p2p (IPS devices will have some luck with signatures, but may not be able to match patterns if encryption is used).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The most successful block I saw was default deny policy for LAN users + proxying of HTTP/HTTPS &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TL;DR Bittorrent is using lots of different tricks to avoid detection. You may be able to block some activity with static methods, but it's trickier to do it completly. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 01 Feb 2012 11:49:55 GMT</pubDate>
    <dc:creator>Marcin Latosiewicz</dc:creator>
    <dc:date>2012-02-01T11:49:55Z</dc:date>
    <item>
      <title>ASA bit torrent blocking</title>
      <link>https://community.cisco.com/t5/network-security/asa-bit-torrent-blocking/m-p/1845820#M460290</link>
      <description>&lt;P&gt;Hi, does anyone why it is nigh impossible to block bit torrent with the ASA firewall. We have a ASA 5520 running 8.4 IOS.&lt;/P&gt;&lt;P&gt;But (correct me if im wrong) the router based IOS firewall allows this functionality?? Whether CBAC, class maps etc.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 22:22:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-bit-torrent-blocking/m-p/1845820#M460290</guid>
      <dc:creator>_cdale</dc:creator>
      <dc:date>2019-03-11T22:22:20Z</dc:date>
    </item>
    <item>
      <title>ASA bit torrent blocking</title>
      <link>https://community.cisco.com/t5/network-security/asa-bit-torrent-blocking/m-p/1845821#M460291</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;bitorrent and many others P2P programs are quite smart about not getting blocked using many mechanisms: &lt;/P&gt;&lt;P&gt;- random source and destination ports&lt;/P&gt;&lt;P&gt;- payload encryption &lt;/P&gt;&lt;P&gt;- tunneling/piggybacking on top of HTTP.&lt;/P&gt;&lt;P&gt;- UPNP usage. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's almost impossible to completly block all P2P activity save for deep packet inspection and looking for patterns. &lt;/P&gt;&lt;P&gt;There are almost no reasoanly effective STATIC mechanisms to block p2p (IPS devices will have some luck with signatures, but may not be able to match patterns if encryption is used).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The most successful block I saw was default deny policy for LAN users + proxying of HTTP/HTTPS &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TL;DR Bittorrent is using lots of different tricks to avoid detection. You may be able to block some activity with static methods, but it's trickier to do it completly. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 01 Feb 2012 11:49:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-bit-torrent-blocking/m-p/1845821#M460291</guid>
      <dc:creator>Marcin Latosiewicz</dc:creator>
      <dc:date>2012-02-01T11:49:55Z</dc:date>
    </item>
    <item>
      <title>ASA bit torrent blocking</title>
      <link>https://community.cisco.com/t5/network-security/asa-bit-torrent-blocking/m-p/1845822#M460292</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I think I was able to effectively block using Service Policy&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 02 Feb 2012 12:14:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-bit-torrent-blocking/m-p/1845822#M460292</guid>
      <dc:creator>jyothydas</dc:creator>
      <dc:date>2012-02-02T12:14:29Z</dc:date>
    </item>
  </channel>
</rss>

