Click here to get back home

block IM

 HomeNewsGroups | Search | About
 microsoft.public.windows.server.security    Post an article   get this group's latest topics as an RSS feed add this group's latest topics to your My MSN content add this group's latest topics to your My Yahoo content
Subject Author Date
block IM NewsGrp 08-19-2005
`--> Re: block IM Steven L Umbach08-19-2005
Posted by NewsGrp on August 19, 2005, 11:16 am
Please log in for more thread options
I have many users who are using IM thru ports 80 and 21, which our firewalls
dont block.
Is there a policy / GPO for block these (AIM, yahoo and ms IM)

thanks

craig




Posted by Steven L Umbach on August 19, 2005, 3:15 pm
Please log in for more thread options
Here is a copy of a reply I recenty did for another poster on nearly the
same subject that may be helpful to you also. --- Steve

I believe that you could stop it with ISA 2004 [free to try] using
application filters for
http to stop it from tunneling through port 80 TCP. For those of us with
more conventional firewalls it probably is a matter of trying to track down
the servers it uses which you might be able to track down by examining your
firewall logs. Beyond that you may have to rely on personal firewalls such
as Zone Alarm, Sygate, etc that can block access to the internet based on
application rules. Of course for that to work well the users would have to
be regular users because local administrators could possibly reconfigure or
disable the firewall service. You might also try using Group Policy.
Windows XP Pro can use Software Restriction Policies that are very effective
at controlling what applications a user can run or install on their
computer. Windows 2000 can blacklist applications though if the user has the
ability to rename the executable they could work around the blacklist. See
the links below for more details if interested. --- Steve

http://www.microsoft.com/technet/prodtechnol/isa/2004/plan/httpfiltering.mspx
--- ISA 2004 application filtering.
http://www.microsoft.com/isaserver/evaluation/trial/default.mspx --- ISA
2004 Evaluation Edition.
http://www.microsoft.com/technet/prodtechnol/winxppro/maintain/rstrplcy.mspx
--- XP Pro SRP
http://support.microsoft.com/default.aspx?scid=kb;en-us;323525 --- GP
restrict applications by executeable
http://www.technobabble.com.au/technobabble/html/tweaks/Group%20Policy%20Registry%20Editor.htm



>I have many users who are using IM thru ports 80 and 21, which our
>firewalls dont block.
> Is there a policy / GPO for block these (AIM, yahoo and ms IM)
>
> thanks
>
> craig
>




Similar ThreadsPosted
W2K - Block USB through GPO ? July 12, 2005, 10:43 am
Block MSN Messenger August 18, 2005, 5:03 pm
Block Toolbars April 26, 2006, 1:22 pm
How to Block UltraSurf? July 17, 2008, 9:50 am
Block file copy October 4, 2005, 10:10 am
ipsec to block ip range November 22, 2005, 12:12 pm
Block server reboots? April 4, 2007, 2:22 pm
Block Remote Control July 6, 2007, 1:18 pm
Block Unauthorized Computer October 31, 2007, 11:06 am
[?]block entire network ranges October 14, 2005, 4:02 pm

Our other projects:

Art Dolls, Fairies and Mermaids - Sunnyfaces.net

Roy's Linux, Programming and Search Engines messages

1-Script XML SitemapXML Sitemap