Forum Home
Press F1
 
Thread ID: 87874 2008-03-07 18:40:00 restricting traffic through router limepile (96) Press F1
Post ID Timestamp Content User
647123 2008-03-07 18:40:00 Good morning,
have a smart teenager who has found p2p sharing and I want to prevent this. I cannot change any settings on his computer as he'll just change them right back, so I think my best bet is to restrict traffic through the router, but I don't want to stop my wife or myself from using the net in any way .
We have a dynalink 4 port router, all run xp sp2,and have assigned ip addresses.
I'm guessing that I need to filter the ports available and my router gives me the choice of port ranges to allow or stop. I think allowing a certain range would be the easiest option, but what range ? He needs to be able to browse the net for homework etc...
thanks in advance.
limepile (96)
647124 2008-03-07 19:06:00 Cant QOS if the router supports it, do this??

Dont ask me how, I dont use QOS or P2P programs.

Or uninstall the P2P program. That'll fix it :badpc:

Or put SP2 on it, if its got XP on it, that'll slow it down.

The only thing you'll get is viruses etc in the end.
Speedy Gonzales (78)
647125 2008-03-07 19:21:00 QOS seems to be about voip, the p2p program will be reinstalled before I can finish my cup of tea! limepile (96)
647126 2008-03-07 19:31:00 Well whos PC is he using? Is it his or yours??

If its his, dont put it on the net, if it yours dont put any P2P programs on it.

Easy as that. Otherwise, make a guest account and chuck him on it. Then he wont be installing anything.

Ask him whos going to fix it, if it gets infected??

Will you fix it?

Will he know how to fix it?
Speedy Gonzales (78)
647127 2008-03-07 20:07:00 My router offers these options;
allow traffic y/n
protocol (drop down menu) tcp
udp
icmp
ah
esp
gre
All
user defined
source ip
destination ip (which will be his assigned ip)
port range

I think the port range is my solution. I'm looking on google but so far no luck, for an adequate range, he'll need to access g-mail and wikipedia etc, do these all fall in the 0-200 port range, or is that too narrow?
And what is the difference between tcp and udp ?
limepile (96)
647128 2008-03-07 20:09:00 Well, you'll have to find out what ports this P2P program uses.

Only thing is, if you block them, it wont work at all.

There's no point in having it installed.
Speedy Gonzales (78)
647129 2008-03-07 20:26:00 Exactly. limepile (96)
647130 2008-03-07 20:33:00 The ports for it should be in its options (in the P2P program) somewhere. And it should say whether they're TCP or UDP.

If he wont let you near the PC lol, go to the site, and see what the ports are. And add them to the router

And change the password in the router to something else (just dont forget it)!

So he cant change it or delete the ports you added.

It shouldnt affect anything else (file sharing / the net) at all.

Well in theory that is. Unless someone is using another program, that uses exactly the same TCP or UDP ports as this P2P program.

Only thing is, he may download / try another P2P program

And this may not use the same ports.
Speedy Gonzales (78)
647131 2008-03-07 20:50:00 And you maybe able to change the ports in the program to something else.

So, even if you add whats in the program now, to the router.

If the ports can be changed, you'll have to add the new ports to the router.

And this could take forever, if he keeps changing the ports

2 ways of fixing it, uninstall the program, or remove him from the network.

Too bad if he needs the net for homework, tell him to get his own line / net access. And pay for it

If he insists on using P2P programs

If you're paying for it, you decide what gets used on it, not him.
Speedy Gonzales (78)
647132 2008-03-07 21:25:00 You and I sound so alike! My wife lets him have free reign on the net, this I disagree with strongly and many many arguments have been caused by this.
My solution so far today has been to configure the routers firewall to restrict traffic in both tcp and udp to ports 20-200 as most p2p software randomises ports and I'd be here till I die trying to catch the correct port. Now I need to see if he can connect, naturally i will deny all knowledge of his lack of access, thanks for your help Speedy, sometimes its enough to just bounce ideas off of someone.
limepile (96)
1 2 3