cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
338
Views
0
Helpful
2
Replies

MSN Blocking

ramim
Level 1
Level 1

can I stop access to MSN Messanger from the PIX 525 and also stop downloads

2 Replies 2

raymong
Level 4
Level 4

A similar question was posted earlier this month:

MSN Messenger can be blocked with TCP Port 1863 and IP Range 64.4.13.0/24. I don't believe this will block out any web content with MSN, but use with caution.

use the following access-list it will block msn chat, icq, aol chat

access-list inside deny tcp any any eq 47624

access-list inside deny tcp any any range 2300 2400

access-list inside deny udp any any range 2300 2400

access-list inside deny tcp any any eq 1863

access-list inside deny tcp any any eq 799

access-list inside deny tcp any any eq 666

access-list inside deny tcp any any eq 554

access-list inside deny udp any any range 1417 1420

access-list inside deny tcp any any eq 1024

access-list inside deny tcp any any eq 1503

access-list inside deny tcp any any eq 135

access-list inside deny tcp any any eq 1755

access-list inside deny udp any any eq 1755

access-list inside deny udp any any range 2000 2003

access-list inside deny tcp any any range 8000 9000

access-list inside deny tcp any any range 6112 6119

access-list inside deny udp any any range 6112 6119

access-list inside deny tcp any any range 2000 2003

access-list inside deny tcp any any eq 4020

access-list inside deny udp any any eq 4020

access-list inside deny tcp any any eq 4747

access-list inside deny tcp any any eq 4748

access-list inside deny tcp any any eq 10090

access-list inside deny udp any any eq 6144

access-list inside deny tcp any any eq 5050

access-list inside deny udp any any eq 5050

access-list inside deny tcp any any eq aol

access-list inside deny udp any any eq 5190

access-list inside deny tcp any any range aol 5193

access-list inside deny udp any any range 5190 5193

access-list inside deny tcp any any eq pcanywhere-data

access-list inside deny udp any any eq pcanywhere-status

access-list inside deny tcp any any range 6665 6669

access-list inside deny tcp any any eq 11999

access-list inside deny tcp any any eq 18888

access-list inside deny tcp any any range 28800 29000

access-list inside deny udp any any range 28800 29000

access-list inside deny tcp any any range 9992 9997

access-list inside deny udp any any range 9992 9997

access-list inside deny udp any any range 8000 9000