Community discussions

MikroTik App
blueskies
刚刚加入了
Topic Author
Posts: 14
加入: Wed Jul 20, 2005 8:53 pm

Ares P2P not being blocked in 2.9rc7

Wed Jul 20, 2005 9:09 pm

I am running 2.9rc7 in bridge mode on a PC between my ADSL router and internal LAN switch. I have only one P2P rule set for "all-p2p" to "drop" P2P traffic. Tested this with Limewire and some other P2P clients - works great no P2P gets through. Just what I want.

Downloaded new Ares Lite 1.8.1 and regular Ares since I heard they had changed their protocols. Both these P2P programs go straight through MT bridge with no problems and files can be downloaded. Not good:(

I read on IPP2P.org that they think Ares has changed/varied its protocols, they had to make some changes to ipp2p to stop new version of Ares.

regards

Peter
Top
用户头像
andrewluck
Forum Veteran
Forum Veteran
Posts: 700
加入: Fri May 28, 2004 9:05 pm
Location:Norfolk, UK

Fri Jul 22, 2005 11:24 am

Peter

Instead of dropping the P2P traffic, try limiting it's bandwidth to a very small value.

P2P programs can be port agile and if they can't make a connection on their preferred port will switch to another. If you allow them a connection they won't do this but because of the small bandwidth, they won't be usable.

问候

Andrew
Top
用户头像
lastguru
Trainer
Trainer
Posts: 432
加入: Fri May 28, 2004 9:04 pm
Location:Certified Trainer/Consultant in Riga, Latvia
Contact:

Fri Jul 22, 2005 11:58 am

Ares canot be speed-limited, but it should be possible to drop it...
Top
用户头像
Ultanium
newbie
Posts: 29
加入: Fri May 28, 2004 7:57 pm
Location:Houston, Texas
Contact:

Sat Jul 23, 2005 6:46 pm

I have had to lock out one of my customers because Ares gets right through the P2P drop rule, and throttling it does not work either. I tried to limit tcp-syn connects on this customer too, but it kept right on going. I hope the team in Latvia can get this fixed, older Ares used the warez protocol but this new one is going to be tough to identify.

Tom
Top
UniKyrn
Member Candidate
Member Candidate
Posts: 245
加入: Fri Dec 24, 2004 9:27 pm
Location:Spokane, WA

Sat Jul 23, 2005 7:31 pm

It's unfortunate, but sometimes it does come down to disconnecting the customer, especially if they've already been warned to stop what they're doing. Your AP is YOUR shared resource, not their private one.
Top
blueskies
刚刚加入了
Topic Author
Posts: 14
加入: Wed Jul 20, 2005 8:53 pm

Ares P2P and alike

Sat Jul 23, 2005 9:46 pm

Andrew,

Thanks for the input. It seems a number or people say Ares can only be blocked not throttled. My personal feelings are that Ares have changed their protocols and the MT stuff has not kept up with the newer P2P software - which is a shame since the software on the whole is very good and powerful in terms of functions. It has been a steep learning curve but the product looks good.

Can any one confirm matters with KaZaA 3.0 and throttling or blocking with MT ??? as I think there may be problems here too.

P2P love or hate it has major impact of WAN links and needs to be kept under control.

Andrew where are you in Norfolk?? I live near Diss in small village called Occold.

regards
Peter.
Top
spire2z
Long time Member
Long time Member
Posts: 516
加入: Mon Feb 14, 2005 2:48 am

Tue Jul 26, 2005 12:32 am

我屏蔽了p2p通过限制e的tcp连接ach IP to only 4 on ports above 80 exept 443 (secure pages). I suppose this could cause problems with other apps but I didn't find any. Most p2p can't connect with so little ports
Top
lquince
刚刚加入了
Posts: 16
加入: Tue Jun 01, 2004 2:01 am
Location:London
Contact:

Tue Aug 16, 2005 3:21 pm

Spire2z,

Is there any chance you could post a example config?

Cheers
Top
去tmoh
newbie
Posts: 38
加入: Fri Jul 15, 2005 8:56 am

Fri Sep 02, 2005 9:07 am

im using someting like this :

add chain=forward in-interface="internal_bridge" protocol=tcp dst-port=0-80 \
tcp-flags=syn,!fin,!rst,!psh,!ack,!urg,!ece,!cwr connection-limit=15,32 \
action=drop comment="Connlimit" disabled=no
add chain=forward in-interface="internal_bridge" protocol=tcp dst-port=81-442 \
tcp-flags=syn,!fin,!rst,!psh,!ack,!urg,!ece,!cwr connection-limit=15,32 \
action=drop comment="" disabled=no
add chain=forward in-interface="internal_bridge" protocol=tcp dst-port=443 \
tcp-flags=syn,!fin,!rst,!psh,!ack,!urg,!ece,!cwr connection-limit=50,32 \
action=drop comment="" disabled=no
add chain=forward in-interface="internal_bridge" src-address=!192.168.0.98 \
protocol=tcp dst-port=444-65535 \
tcp-flags=syn,!fin,!rst,!psh,!ack,!urg,!ece,!cwr connection-limit=5,32 \
action=drop comment="limit444" disabled=no

additionalny scheduler changing rule "limit444" from 5 to 400 connection per user from 0.30 till 7.30.
Top
blueskies
刚刚加入了
Topic Author
Posts: 14
加入: Wed Jul 20, 2005 8:53 pm

Wed Sep 07, 2005 3:08 am

我屏蔽了p2p通过限制e的tcp连接ach IP to only 4 on ports above 80 exept 443 (secure pages). I suppose this could cause problems with other apps but I didn't find any. Most p2p can't connect with so little ports

Hi, could someone please put an example config that I could try with MT configured as a bridge with just 2 NIC's?? Want to see if Ares can be stopped using this method. regards Peter.
Top

Who is online

Users browsing this forum:Ahrefs [Bot],DanunaH,去ogle [Bot],Tommmyzand 44 guests