Solved

Block MySpace and IM on Cisco 1700 Series Router

Posted on 2007-03-21
6
482 Views
Last Modified: 2008-01-09
I need to block MySpace and AOL IM on a Cisco 1700 series router/firewall.  I have tried to setup the Access-list but I am still having problems.
0
Comment
Question by:ComNetPlus
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 3
  • 3
6 Comments
 
LVL 20

Expert Comment

by:RPPreacher
ID: 18763663
Can you post the ACL that you created?
0
 

Author Comment

by:ComNetPlus
ID: 18763727
Since it wasn't working I did not save the temporary access-list and did not save it to the configuration.
Here's where it currently stands.

Standard IP access list 10
    permit 10.10.10.0, wildcard bits 0.0.0.255 (250915 matches) check=27638
0
 
LVL 20

Accepted Solution

by:
RPPreacher earned 125 total points
ID: 18763801
Block port 5190 (AIM)
Block IP ranges 67.134.143.0 - 67.134.143.255

The access-list should look like this

access-list 101 deny tcp any any eq 5190
access-list 101 deny ip any 67.134.143.0 0.0.0.255
access-list 101 permit ip any any
0
Ransomware - Can it be prevented?

Worried about ransomware attacks hitting your organization?  The good news is that these attacks are predicable and therefore preventable. Learn more about how you can  stop a ransomware attacks before encryption takes place with WatchGuard Total Security!

 

Author Comment

by:ComNetPlus
ID: 18763934
What IP is subnet 67.134.143.0?
When I ping www.myspace.com I receive IP 216.178.38.131.
0
 
LVL 20

Expert Comment

by:RPPreacher
ID: 18763995
I went to arin.net
myspace.com owns 67.134.143.0/24.
0
 

Author Comment

by:ComNetPlus
ID: 18764266
I don't fully understand why, but I had to have both entries to be effective.

access-list 101 deny tcp any any eq 5190
access-list 101 deny ip any 67.134.143.0 0.0.0.255
access-list 101 deny ip  any 216.178.38.0 0.0.0.255
access-list 101 permit ip any any

Anyway it all now works and blocks myspace.

Thanks,
0

Featured Post

Free Tool: IP Lookup

Get more info about an IP address or domain name, such as organization, abuse contacts and geolocation.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Videos Blocked on espn.com 7 322
IP Calculator 10 93
Allow dynamic IP address to become static. 5 48
How can I test a Deny All In Firewall rule? 2 53
Article by: rfc1180
The Maximum Segment size (MSS) is an important consideration when troubleshooting connectivity via the Internet/Intranet. As the packets are routed via the Internet/Intranet, the packets must traverse through multiple routers in the path between two…
Skype is a P2P (Peer to Peer) instant messaging and VOIP (Voice over IP) service – as well as a whole lot more.
The goal of the tutorial is to teach the user how to instant message and make a video call in Skype.
I've attached the XLSM Excel spreadsheet I used in the video and also text files containing the macros used below. https://filedb.experts-exchange.com/incoming/2017/03_w12/1151775/Permutations.txt https://filedb.experts-exchange.com/incoming/201…

740 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question