You need to block this traffic at the application layer. Try to block it using a proxy server, or if you have a Cisco router you may want to look at NBAR (network based application recognition).
Spot on again. This doc gives pointers, but as yet there's no proper way to inspect this kind of traffic at the application level on the pix on it's own;
I beat this horse to death a couple of months back. Found the best way is to install a packeshaper behind the PIX instead of trying to block the traffic give it a non burstable partition of 1K of data. Users will eventually get frustrated and quit using the apps. A shaping appliance is recommended but you can do the same thing with a few open source apps if you like to program.
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.