Sei sulla pagina 1di 12

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

1 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Language: English
English
(Japanese)
Espaol (Spanish)
Portugus (Portuguese)
P (Russian)
(Chinese)
Contact Us
Help
Follow Us
Facebook
Twitter
Google +

LinkedIn
Newsletter
Instagram
YouTube
Community Directory
Expert Corner
Solutions
Community Corner
Community Resources
Cisco

Cisco Support Community


Community Directory

Network Infrastructure
WAN, Routing and Switching
LAN, Switching and Routing

Security
VPN
Security Management

Service
Providers

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

2 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Network Management
Wireless
Mobile
Data
Cisco
Center
Certifications
Cafe
Applications
- Mobility
Remote Access

Firewalling
Metro
Cisco
Services
Solutions
User
and
Groups
Architectures
Collaboration,
Online
Small
Cisco.com
Tools
Intrusion Prevention Systems/IDS
MPLS
Voice
and
Business
Idea
Center
and
Optical Networking
AAA, Identity and NAC
Voice
Over IP
Security
Cisco
Application
andCentric
Network
Management
Cisco
Borderless
Seattle
ServiceGrid
Cisco
Networks
User Group (SEACUG)
GettingProximity
Started
with Infrastructure
LANs
Physical
Security
XR OS and
Video
Resources
Wireless
Cisco
Application
Technical
IP Voice
Networking
Support
andTransition
Video
Compliance
Collaboration
Silicon
Cisco User Group
and Configuration
(SVCUG)
Service
IPv6 Integration
and
MARS ValleyManagement
Platforms
Network

Intelligent
Getting
Started
Automation
with Wireless
Connected
Southern
California
AnalyticsCisco User Group (SCCUG)
EEM Scripting
Email Security
Video
Storage
WLCCA
Server
Networking
Customer
Premises
Equipment
(CPE)
Support
IP
Cisco
Telephony
Bug
Other Subjects
Web Security
Other
Subjects
Routers
Other Subjects
Storage
Networking
Data
Virtualization
Software
(CIS)
Video
Discussions
Over IP
Other Subjects
Security
Unified Computing
Partner Support Service
Jabber Clients
Technical
Surveillance
Wide Area Application Services (WAAS) Smart Call Home
Unified
Documentation
Switches
Other Subjects
Smart Care
Communications
Ideas
Voice and
Smart Net Total Care
Applications
Support
Conferencing
Cisco Data Virtualization
TelePresence
Community
Wireless
Operations Exchange
Digital Media
Help
System
Contact Center
Conferencing
UC Migrations
Other Subjects

Expert Corner
Top Contributors
Events
Leaderboards
Experts Bureau
Cisco Live! Events
Solutions
Affiliates Portal
Cisco On Demand
Cisco SMB Marketplace
Community Corner
Awards & Recognitions
Behind the Scenes
Community Ideas
Feedback Forum

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

3 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Cisco Certifications
Login | Register

Home/
Security
Additional Communities
Community Corner
Data Center
Mobile Applications
Network Infrastructure
Wireless - Mobility
Service Providers
Collaboration, Voice and Video
Small Business Support Community
Solutions and Architectures
Services
Top Contributors
Cisco User Groups
On Demand
Online Tools and Resources
Private
/
Firewalling
Sourcefire
VPN
Intrusion Prevention Systems/IDS
AAA, Identity and NAC
Physical Security
Security Management
MARS
Email Security
Web Security
Other Security Subjects
Language: English
English
(Japanese)
Espaol (Spanish)
Portugus (Portuguese)
P (Russian)
(Chinese)
Contact Us
Help
Follow Us
Facebook
Twitter
Google +

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

4 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

LinkedIn
Newsletter
Instagram
YouTube

How to Block BitTorrent , Download-Manager through ASA


Unanswered Question

Imran Ahmad 3 years ago


Hello Gus,
We have many clients who are misusing our company bandwidth by downloading files through BitTorrent and
Download-Managers. i tried alot to block it but no luck.
Can anyone intruct me on how to block them on ASA device ?
I have this problem too.
0 votes

Overall Rating: 0 (0 ratings)

Log in or register to post comments

Share:

Replies
Collapse all
Recent replies first

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

5 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Leo Laohoo 3 years ago

You don't block them in the ASA.


You can use AD to block applications like BitTorrent and DM from running.
See More

Overall Rating: 0 (0 ratings)

Log in or register to post comments

Nitesh Saxena 3 years ago


hi
you can block bit torrent
http://wiki.wireshark.org/BitTorrent ---> you can use this guide for the tcp ports.
Ports range for Bit torrent
Bittorrent uses TCP to transfer files and UDP for searching. It will use port 80 if the default TCP ports
6881-6889,6969 and 8080 can not be reached. Some bittorrent clients also support HTTP downloading.To
completely block BT, please block UDP port 1024-65534 in your router.
then make acl based on that and apply it
do rate if helpful.
Nitesh
See More

Overall Rating: 0 (0 ratings)

Log in or register to post comments

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

6 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Imran Ahmad 3 years ago


It is not working.
isn't there any other ways to block it through ASA ? i dont have AD
See More

Overall Rating: 0 (0 ratings)

Log in or register to post comments

Nitesh Saxena 3 years ago


hi Iram,
regex bit-torrent-tracker ".*[Ii][Nn][Ff][Oo]_[Hh][Aa][Ss][Hh]=.*"
object-group service BitTorrent-Tracker tcp
description TCP Ports used by Bit Torrent for tracker communication
port-object eq 2710
port-object eq 6969
object-group service Blocked-UDP-Ports udp
description All ports blocked for Bit Torrent UDP DHT (all ephemeral ports except VPN
encapsulation)
port-object range 10001 65535
port-object range 1024 9999
class-map type inspect http match-all bit-torrent-tracker
description Bit Torrent Tracker communication
match request args regex bit-torrent-tracker
match request method get

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

7 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

policy-map type inspect http Drop-P2P


description Drop protocol violations, Kazaa, gator and Bit Torrent Tracker traffic
parameters
protocol-violation action log
class _default_gator
drop-connection log
class _default_kazaa
drop-connection log
class bit-torrent-tracker
drop-connection log
policy-map global_policy
class inspection_default
inspect http Drop-P2P

Thanks,
Nitesh
Please rate if helpful
See More

Overall Rating: 0 (0 ratings)

Log in or register to post comments

Imran Ahmad 3 years ago


it is not working
See More

Overall Rating: 0 (0 ratings)

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

8 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Log in or register to post comments

Nitesh Saxena 3 years ago


did you apply the policy map or not??
or just copy pasted the configuration on top??
See More

Overall Rating: 0 (0 ratings)

Log in or register to post comments

Nitesh Saxena 3 years ago


object-group service Blocked-UDP-Ports udp
description All ports blocked for Bit Torrent UDP DHT (all ephemeral ports except VPN encapsulation)
port-object range 10001 65535
port-object range 1024 9999
object-group service BitTorrent-Tracker tcp
description TCP Ports used by Bit Torrent for tracker communication
port-object eq 2710
port-object range 6881 6999
access-list inside_access_in extended deny udp any any object-group Blocked-UDP-Ports log warnings inactive
access-list inside_access_in extended deny tcp any any object-group BitTorrent-Tracker log warnings inactive
access-list inside_access_in extended permit tcp any any
Apply the access list in the inside interface it might need modifications depending on your configuration
and its just a sample configuration
regex bit-torrent-tracker ".*[Ii][Nn][Ff][Oo]_[Hh][Aa][Ss][Hh]=.*"

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

9 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

class-map type inspect http match-all bit-torrent-tracker


description Bit Torrent Tracker communication
match request args regex bit-torrent-tracker
match request method get
policy-map type inspect http Drop-P2P
description Drop protocol violations Bit Torrent Tracker traffic
parameters
protocol-violation action log
class bit-torrent-tracker
drop-connection log
policy-map global_policy
class inspection_default
inspect http Drop-P2P
See More

Overall Rating: 0 (0 ratings)

Log in or register to post comments

Actions
Login or Register to take actions

This Discussion
Posted July 31, 2012 at 10:43 AM
By Imran Ahmad
Stats:
Replies: 7
Overall Rating:
Views: 11538 Votes:
0
Shares: 0
Tags: asa, block, bittorrent, through
+

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

10 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

0 Votes
Follow
Shortcut
Abuse
Save

Related Content
Show

Document
Test new config on remote ASA, with fallback option
ph
5 days 12 hours ago
10 views
Discussion
Any Connect License
Vinh Phan Le Tien
2 weeks 3 days ago
28 views
Discussion
ASA - What is allowing return HTTP traffic?
Gregor Blaj
2 weeks 4 days ago
17 views
Discussion
AnyConnect VPN Error - No Extended Key Usages
jspaid1592
3 weeks 11 hours ago
18 views
Discussion
ASA Migration of DHCP Scope to a Server
Kimberly Adams
1 month 1 day ago
19 views

Trending Topics - Firewalling

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

11 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Cisco ASDM
Cisco ASDM Launcher
Cisco ASA NAT
Can ping but not browse
Failed to locate egress interface
DHCP Relay
Palo Alto Firewall vs ASA

Information For
Small Business
Midsize Business
Executives
Home
Service Provider
Industries
Contacts
Contact Cisco
News & Alerts
Newsroom
Blogs
Field Notices
Security Advisories
Technology Trends
Cloud
IPv6
Mobility
Open Network Environment
Trustworthy Systems
Support
Downloads
Documentation
Communities
Developer Network
Learning Network
Support Community
Video Portal
About Cisco
Investor Relations
Corporate Social Responsibility
Environmental Sustainability
Tomorrow Starts Here

4/28/2015 9:48 AM

How to Block BitTorrent , Download-Manager through ASA | Firewalling ...

12 of 12

https://supportforums.cisco.com/discussion/11566671/how-block-bittorre...

Career Opportunities
Programs
Cisco Designated VIP Program
Cisco Powerered
Financing Options
Terms & Conditions
Privacy Statement
Cookie Policy
Trademarks of Cisco Systems, Inc.

4/28/2015 9:48 AM

Potrebbero piacerti anche