Firewall Wizards mailing list archives

Re: Napster..


From: Wouter Slegers <wouter () yourcreativesolutions nl>
Date: Wed, 21 Feb 2001 16:08:15 +0100

On Wed, Feb 21, 2001 at 10:10:44AM +1100, Darren Reed wrote:
Thanks to those who have pointed out that Napster has both "push" and
"pull" technology(!) inside it to get around those pesky firewalls.
A good (although depressing) example of why the protection a firewall
can give is deminishing. Another favorite example of mine is the "tunnel
everything over HTTP" protocols such as SOAP.

[SNIP]
A napster proxy might also do the trick, if there were documentation
on the protocol...
I haven't checked them myself, but at <URL:http://opennap.sourceforge.net/> 
people are succesfully implementing napster servers (and clients) and
have a (subset of?) the protocol documented. See also <URL:http://david.
weekly.org/code/napster.php3>.
This could be used to make a proxy, but you will have to find a way to
get the clients to connect through the proxy. This will probably mean
you have to grab the connections as they go to a napster/opennap-server
and interpose your "napster-proxy" in a way similar to the transparent
proxying with Squid and your excellent IPF.
There is a risk that you miss one of the connections (e.g. you missed one
of the servers' addresses), therefor fail to control the command stream
of the protocol with your proxy and lose the game. 

Darren
With kind regards,
Wouter Slegers
_______________________________________________
firewall-wizards mailing list
firewall-wizards () nfr com
http://www.nfr.com/mailman/listinfo/firewall-wizards


Current thread: